Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Incidents
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
RE: www.google.com reference in directory-traversal attack Jul 14 2003 09:11PM
David Gillett (gillettdavid fhda edu)
A web server might be host to multiple sites, and the Host: header
on the request allows the client to specify which one he wants. I
expect single-site servers just ignore it, and in any case it's not
relevant to the request since directory traversal attempts to break
out of the site to the host...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus