vendor:
FileServer
by:
joepie91
7,5
CVSS
HIGH
Authentication Bypass
287
CWE
Product Name: FileServer
Affected Version From: 1.0
Affected Version To: 1.0
Patch Exists: YES
Related CWE: N/A
CPE: a:msgpluslive.nl:fileserver:1.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2009
Windows Live Messenger Plus! FileServer 1.0
The FileServer script allows a user using Windows Live Messenger Plus! to share a defined folder and its subfolders and files with a contact. Authentication is done using a user-defined username and password. However, when using ../ with the !cd command, you can actually go beyond the root folder, allowing for downloading of EVERY file on the same disk as the defined folder, even outside the root folder.
Mitigation:
Patch the vulnerability as soon as possible to prevent abuse.