CVE-2008-4421
MetaGauge < 1.0.3.38 - Path Traversal via Dot Dot Backslash in URL
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-4421. PoCs published by Brad Antoniewicz.
AI-analyzed exploit summary This exploit demonstrates a directory traversal vulnerability in MetaGauge 1.0.0.17, allowing remote users to read arbitrary files on the target server via crafted HTTP requests. The PoC uses a simple `GET` request with traversal sequences to access `win.ini`.
Description
Directory traversal vulnerability in MetaGauge 1.0.0.17, and probably other versions before 1.0.3.38, allows remote attackers to read arbitrary files via a "..\" (dot dot backslash) in the URL.
Exploits (1)
This exploit demonstrates a directory traversal vulnerability in MetaGauge 1.0.0.17, allowing remote users to read arbitrary files on the target server via crafted HTTP requests. The PoC uses a simple `GET` request with traversal sequences to access `win.ini`.