CVE
- Id
- 1398
- CVE No.
- CVE-1999-1418
- Status
- Candidate
- Description
- ICQ99 ICQ web server build 1701 with "Active Homepage" enabled generates allows remote attackers to determine the existence of files on the server by comparing server responses when a file exists ("404 Forbidden") versus when a file does not exist ("404 not found").
- Phase
- Proposed (20010912)
- Votes
- MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall
- Comments
- Frech> XF;icq-webserver-gain-information(8229) | CONFIRM:http://online.securityfocus.com/archive/1/13655