Loading HuntDB...

Korea - LFI Server directory traversal at starbucks.co.kr

High
S
Starbucks
Submitted None

Team Summary

Official summary from Starbucks

b4bilal discovered a misconfiguration when handling URI paths. This permitted an adversary to traverse the docroot and access non sensitive resources that are normally unavailable to web users. @b4bilal — thank you for reporting this vulnerability and for confirming the resolution.

Reported by 0xb33

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Path Traversal