Lil HTTP Server 2.1 allows remote attackers to read password-protected files via a /./ in the HTTP request.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=101432338000591&w=2 | mailing list |
http://www.summitcn.com/lilhttp/lildocs.html#WhatsNew | |
http://marc.info/?l=bugtraq&m=101665069500433&w=2 | mailing list |
http://www.securityfocus.com/bid/4153 | vdb entry |