CVE-2001-0211
WebSPIRS 3.1 - Directory Traversal via sp.nextform Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2001-0211. PoCs published by cuctema.
AI-analyzed exploit summary This exploit leverages a directory traversal vulnerability in SilverPlatter WebSPIRS by crafting a URL with '../' sequences to access files outside the root directory. The attack is straightforward and requires no authentication.
Description
Directory traversal vulnerability in WebSPIRS 3.1 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the sp.nextform parameter.
Exploits (1)
This exploit leverages a directory traversal vulnerability in SilverPlatter WebSPIRS by crafting a URL with '../' sequences to access files outside the root directory. The attack is straightforward and requires no authentication.