Vulnerabilities > CVE-2004-2445 - Unspecified vulnerability in Jaws 0.3Beta
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Directory traversal vulnerability in index.php in Jaws 0.3 BETA allows remote attackers to view arbitrary files via a .. (dot dot) in the gadget parameter.
Exploit-Db
description | JAWS 0.2/0.3 index.php gadget Parameter Traversal Arbitrary File Access. CVE-2004-2445. Webapps exploit for php platform |
id | EDB-ID:24255 |
last seen | 2016-02-02 |
modified | 2004-07-06 |
published | 2004-07-06 |
reporter | Fernando Quintero |
source | https://www.exploit-db.com/download/24255/ |
title | JAWS 0.2/0.3 index.php gadget Parameter Traversal Arbitrary File Access |
Nessus
NASL family | CGI abuses |
NASL id | JAWS_MULTIPLE_FLAWS.NASL |
description | The remote web server is running JAWS, a content management system written in PHP. Input to the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 16198 |
published | 2005-01-18 |
reporter | This script is Copyright (C) 2005-2018 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/16198 |
title | JAWS index.php gadget Parameter Traversal Arbitrary File Access |
code |
|
References
- http://archives.neohapsis.com/archives/fulldisclosure/2004-07/0226.html
- http://archives.neohapsis.com/archives/fulldisclosure/2004-07/0226.html
- http://securitytracker.com/id?1010651
- http://securitytracker.com/id?1010651
- http://www.osvdb.org/7722
- http://www.osvdb.org/7722
- http://www.securityfocus.com/bid/10670
- http://www.securityfocus.com/bid/10670
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16620
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16620