CVE-2005-1939
Ipswitch WhatsUp Small Business 2004 - Directory Traversal via Report Service
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-1939. PoCs published by Dennis Rand.
AI-analyzed exploit summary This exploit demonstrates a directory traversal vulnerability in IPSwitch WhatsUp Small Business 2004, allowing remote attackers to access files outside the web root, such as boot.ini, by manipulating the URL path.
Description
Directory traversal vulnerability in Ipswitch WhatsUp Small Business 2004 allows remote attackers to read arbitrary files via ".." (dot dot) sequences in a request to the Report service (TCP 8022).
Exploits (1)
This exploit demonstrates a directory traversal vulnerability in IPSwitch WhatsUp Small Business 2004, allowing remote attackers to access files outside the web root, such as boot.ini, by manipulating the URL path.