Joe Testa hellbent 01 allows remote malicious users to determine the full path of the web root directory via a GET request with a relative path that includes the root's parent, which generates a 403 error message if the parent is incorrect, but a normal response if the parent is correct.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
joetesta hellbent 0.1 |