HACK HiSPANO
Volver Atras   HACK HiSPANO > SEGURIDAD > VULNERABILIDADES
Actualizar esta página TFTPD32 Directory Traversal Vulnerability

Respuesta
 
LinkBack Herramientas Modos de Vista
  (#1) Antiguo
Ex-moderador
 
Posts: 3,184
Fecha de Ingreso: Apr 2002
TFTPD32 Directory Traversal Vulnerability - 20-11-2002, 23:27


Advisory available at:
http://www.securiteam.com/windowsntf...D00D2061G.html


TFTPD32 Directory Traversal Vulnerability
--------------------------------------------


SUMMARY

<http://tftpd32.jounin.net> TFTPD32 is a Freeware TFTP server for
windows 9x/NT/XP. It provides an implementation of the TFTPv2 protocol
(specified in the RFC 1350).

A vulnerability in the product allows remote attackers to view any file
on the system as well as write to arbitrary locations.


DETAILS

Vulnerable systems:
* TFTP32 version 2.50.2 and prior

Immune systems:
* TFTP32 version 2.51

Exploit:
Getting files:
tftp host GET /boot.ini

Storing files:
tftp host PUT myfile /boot.ini


ADDITIONAL INFORMATION

The information has been provided by <mailto:expert@securiteam.com>
SecurITeam Experts.

--
Aviram Jenik
Beyond Security Ltd.
http://www.BeyondSecurity.com
http://www.SecuriTeam.com

Know that you're safe:
http://www.AutomatedScanning.com


TseTse


' La corrupción, el síntoma más infalible de la libertad que otorga la Constitución '
Responder con Cita
Respuesta

Bookmarks

Herramientas
Modos de Vista

Normas
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies son On
[IMG] código esta On
Código HTML esta Off
Trackbacks are On
Pingbacks are On
Refbacks are On




Alojado en Hacheté Diseños Web

Powered by vB 3
Copyright © 1999-2013 HACK HiSPANO