header-logo
Suggest Exploit
vendor:
FSboard
by:
SecurityFocus
7.5
CVSS
HIGH
Directory Traversal
22
CWE
Product Name: FSboard
Affected Version From: All versions
Affected Version To: All versions
Patch Exists: N/A
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2004

FSboard Directory Traversal Vulnerability

FSboard is prone to a directory traversal vulnerability. This could allow a remote attacker to read files outside the Web root. This could only be used to access files to which the Web server has permission.

Mitigation:

Ensure that user input is properly sanitized and validated before being used in filesystem operations.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/14111/info

FSboard is prone to a directory traversal vulnerability.

This could allow a remote attacker to read files outside the Web root. This could only be used to access files to which the Web server has permission.

All versions of FSboard are vulnerable to this issue at the moment. 

http://www.example.com/forum/default.asp?db=general&mode=download&idx=507&fileNum=1&filename=../conf.asp&nav=viewcontents&srhctgr=&srhstr=&page=1