Netscape Enterprise Server with Web Publishing enabled allows remote attackers to list arbitrary directories via a GET request for the /publisher directory, which provides a Java applet that allows the attacker to browse the directories.
Link | Tags |
---|---|
http://zsh.stupidphat.com/advisory.cgi?000311-1 | |
http://www.securityfocus.com/bid/1075 | exploit vdb entry patch vendor advisory |