CVE-2007-0055
Formbankserver 1.9 - Directory Traversal via Name Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-0055. PoCs published by Bl0od3r.
AI-analyzed exploit summary This Perl script exploits a directory traversal vulnerability in FormBankServer's CGI component to read arbitrary files. It sends a crafted HTTP request with a null byte to bypass path restrictions.
Description
Directory traversal vulnerability in formbankcgi.exe/AbfrageForm in Formbankserver 1.9 allows remote attackers to read arbitrary files via directory traversal sequences in the Name parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
This Perl script exploits a directory traversal vulnerability in FormBankServer's CGI component to read arbitrary files. It sends a crafted HTTP request with a null byte to bypass path restrictions.