Title: Bytes Interactive Web Shopper Directory Traversal Vulnerability
Severity: MODERATE
Description:
Bytes Interactive Web Shopper is a XML based shopping cart application.
The "newpage" variable does not properly check for insecure relative paths such as the double dot "..".
The following URL request:
http://target/cgi-bin/shopper.cgi?newpage=../../../path/filename.ext
will yield the file specified.
Successful exploitation could lead to a remote intruder gaining read access to any known file.
Affected Products:
- Bytes Interactive Web Shopper 1.0.0
- Bytes Interactive Web Shopper 2.0.0
References:
- Bytes Interactive: Bytes Interactive Homepage
Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.