BRS WebWeaver Web Server 1.01 allows remote attackers to bypass password protections for files and directories via an HTTP request containing a "/./" sequence.
Link | Tags |
---|---|
http://www.securityoffice.net/articles/webweaver/ | exploit vendor advisory |
http://www.iss.net/security_center/static/10467.php | vdb entry vendor advisory |
http://www.securityfocus.com/bid/6041 | vdb entry vendor advisory |
http://archives.neohapsis.com/archives/vulnwatch/2002-q4/0043.html | mailing list |