mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-01 15:11:34 +02:00
776 B
776 B
CVE-2006-5570
Description
Directory traversal vulnerability in /scripts/cruise/cws.exe in CruiseWorks 1.09c and 1.09d allows remote attackers to read arbitrary files via a .. (dot dot) in the doc parameter.
POC
Reference
- http://securityreason.com/securityalert/1790
- http://securityreason.com/securityalert/1790
- http://vuln.sg/cruiseworks109d-en.html
- http://vuln.sg/cruiseworks109d-en.html
Github
No PoCs found on GitHub currently.