Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Key Focus KF Web Server Directory Contents Disclosure Vulnerability

It has been reported that version 1.0.2 of KF Web Server discloses the contents of directories when a certain character is present in the URL.

If a remote attacker appends the "%00" character, it will cause the web server to display the contents of the current directory.







 

Privacy Statement
Copyright 2009, SecurityFocus