Advantech SUSIAccess 3.0 Directory Traversal / Information Disclosure
Posted by deepcore on August 3, 2017 – 12:55 am
This Metasploit module exploits an information disclosure vulnerability found in Advantech SUSIAccess versions 3.0 and below. The vulnerability is triggered when sending a GET request to the server with a series of dot dot slashes (../) in the file parameter.
Post a reply
You must be logged in to post a comment.