CVE
- Id
- 1657
- CVE No.
- CVE-2000-0079
- Status
- Candidate
- Description
- The W3C CERN httpd HTTP server allows remote attackers to determine the real pathnames of some commands via a request for a nonexistent URL.
- Phase
- Proposed (20000125)
- Votes
- MODIFY(2) Baker, Frech | NOOP(2) Christey, Williams | RECAST(1) LeBlanc
- Comments
- Frech> XF:w3c-httpd-reveal-paths | LeBlanc> Title references IIS, vuln references W3C CERN httpd. Which | one is broken? | Christey> The mention of CERN httpd was buried in a followup on a | description of an IIS problem, so this is the correct reference. | Baker> Will the XF reference be added?