AJ-Forcella 167 non limita l’accesso alle directory come i dati (1), (2) inc, (3) i plugin, (4) pelli, o (5) strumenti, che consente agli aggressori remoti di file di elenco in queste directory tramite un richiesta HTTP diretta. |
http://www.securityfocus.com/bid/11301 http://marc.info/?l=bugtraq&m=109664986210763&w=2 http://echo.or.id/adv/adv07-y3dips-2004.txt http://securitytracker.com/id?1011484 https://exchange.xforce.ibmcloud.com/vulnerabilities/17569 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1572 |
Vulnerabilità: CVE-2004-1572
