Remote Authentication Bypass in WSSecurity.pl of WebStore

Remote Authentication Bypass in WSSecurity.pl of WebStore

CVE-2001-1344 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

WSSecurity.pl in WebStore allows remote attackers to bypass authentication by providing the program with a filename that exists, which is made easier by (1) inserting a null character or (2) .. (dot dot).

Learn more about our Web App Pen Testing.