Vulnerabilities > CVE-2005-1365 - Directory Traversal vulnerability in Pserv

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
pico-server
critical
exploit available

Summary

Pico Server (pServ) 3.2 and earlier allows remote attackers to execute arbitrary commands via a URL with multiple leading "/" (slash) characters and ".." sequences.

Exploit-Db

descriptionPserv 3.2 Directory Traversal Vulnerability. CVE-2005-1365. Remote exploit for linux platform
idEDB-ID:25669
last seen2016-02-03
modified2005-05-16
published2005-05-16
reporterClaus R. F. Overbeck
sourcehttps://www.exploit-db.com/download/25669/
titlepserv 3.2 - Directory Traversal Vulnerability

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/39267/pservBad.txt
idPACKETSTORM:39267
last seen2016-12-05
published2005-08-14
reportertsyklon.informatik.rwth-aachen.de
sourcehttps://packetstormsecurity.com/files/39267/pservBad.txt.html
titlepservBad.txt