Lluis Mora

3 exploits Active since Oct 2000
CVE-2000-0697 EXPLOITDB text WORKING POC
Solaris AnswerBook2 - Command Injection
The administration interface for the dwhttpd web server in Solaris AnswerBook2 allows interface users to remotely execute commands via shell metacharacters.
CVE-2000-0696 EXPLOITDB text WRITEUP
Solaris AnswerBook2 - Auth Bypass
The administration interface for the dwhttpd web server in Solaris AnswerBook2 does not properly authenticate requests to its supporting CGI scripts, which allows remote attackers to add user accounts to the interface by directly calling the admin CGI script.
CVE-2000-0920 EXPLOITDB text WRITEUP
BOA web server <0.94.8.2 - Path Traversal
Directory traversal vulnerability in BOA web server 0.94.8.2 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack in the GET HTTP request that uses a "%2E" instead of a "."