CVE

Id
10000  
CVE No.
CVE-2004-1572  
Status
Candidate  
Description
AJ-Fork 167 does not restrict access to directories such as (1) data, (2) inc, (3) plugins, (4) skins, or (5) tools, which allows remote attackers to list files in those directories via a direct HTTP request.  
Phase
Assigned (20050220)  
Votes
None (candidate not yet proposed)  
Comments