CVE-2003-0338
WsMp3 daemon < 0.0.10 - Unauthenticated Directory Traversal via HTTP Request
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2003-0338. PoCs published by dong-h0un U.
AI-analyzed exploit summary This exploit demonstrates a directory traversal vulnerability in WsMp3 via an HTTP POST request, allowing arbitrary file execution. The PoC uses a simple telnet command to send a malicious POST request to execute '/bin/ps'.
Description
Directory traversal vulnerability in WsMp3 daemon (WsMp3d) 0.0.10 and earlier allows remote attackers to read and execute arbitrary files via .. (dot dot) sequences in HTTP GET or POST requests.
Exploits (1)
This exploit demonstrates a directory traversal vulnerability in WsMp3 via an HTTP POST request, allowing arbitrary file execution. The PoC uses a simple telnet command to send a malicious POST request to execute '/bin/ps'.