CVE

Id
1398  
CVE No.
CVE-1999-1418  
Status
Candidate  
Description
ICQ99 ICQ web server build 1701 with "Active Homepage" enabled generates allows remote attackers to determine the existence of files on the server by comparing server responses when a file exists ("404 Forbidden") versus when a file does not exist ("404 not found").  
Phase
Proposed (20010912)  
Votes
MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  
Comments
Frech> XF;icq-webserver-gain-information(8229) | CONFIRM:http://online.securityfocus.com/archive/1/13655