CVE
- Id
- 11002
- CVE No.
- CVE-2004-2576
- Status
- Candidate
- Description
- class.vfs_dav.inc.php in phpGroupWare 0.9.16.000 does not create .htaccess files to enable authorization checks for access to users" home-directory files, which allows remote attackers to obtain sensitive information from these files.
- Phase
- Assigned (20051128)
- Votes
- None (candidate not yet proposed)
- Comments