Directory traversal vulnerability in iWeb Server 2 allows remote attackers to read arbitrary files via an HTTP request containing URL-encoded .. sequences ("%5c%2e%2e"), a different vulnerability than CVE-2003-0474.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=105640001823769&w=2 | mailing list |
http://marc.info/?l=bugtraq&m=105673543626636&w=2 | mailing list |