18070exploit
http://www.exploit-db.com/exploits/18070 CVE-2011-4831
Web File Browser 0.4b14 - File Download
Record summary
CVE-2011-4831 has a selected CVSS score of 4.0; EIP currently links 1 catalogued exploit.
Description
Directory traversal vulnerability in webFileBrowser.php in Web File Browser 0.4b14 allows remote authenticated users to read arbitrary files via a ..%2f (encoded dot dot) in the file parameter in a download action.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBWeb File Browser 0.4b14 - File DownloadExploitDB exploitby Sangyun YOONot analyzed1 file
References
2nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2011-4831