CVE-2001-0924
IBM Informix Web DataBlade - Directory Traversal via LO Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2001-0924. PoCs published by Beck Mr.R.
AI-analyzed exploit summary The exploit describes a directory traversal vulnerability in the Web Datablade Module for Informix SQL, allowing remote attackers to access arbitrary web-readable files via crafted requests containing dot-dot-slash sequences. The issue occurs when large object caching is enabled, independent of the web server used.
Description
Directory traversal vulnerability in ifx CGI program in Informix Web DataBlade allows remote attackers to read arbitrary files via a .. (dot dot) in the LO parameter.
Exploits (1)
The exploit describes a directory traversal vulnerability in the Web Datablade Module for Informix SQL, allowing remote attackers to access arbitrary web-readable files via crafted requests containing dot-dot-slash sequences. The issue occurs when large object caching is enabled, independent of the web server used.