CVE-2011-4712
Oxide WebServer - Unauthenticated Path Traversal via Dot Dot Backslash
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2011-4712. PoCs published by demonalex.
AI-analyzed exploit summary This exploit demonstrates a directory traversal vulnerability in Oxide WebServer by using various path traversal sequences to access arbitrary files like boot.ini. The vulnerability arises from insufficient input sanitization in the web interface.
Description
Directory traversal vulnerability in Oxide WebServer allows remote attackers to read arbitrary files via a ..\ (dot dot backslash) in an HTTP request.
Exploits (1)
This exploit demonstrates a directory traversal vulnerability in Oxide WebServer by using various path traversal sequences to access arbitrary files like boot.ini. The vulnerability arises from insufficient input sanitization in the web interface.