CVE

Id
4696  
CVE No.
CVE-2002-0304  
Status
Candidate  
Description
Lil HTTP Server 2.1 allows remote attackers to read password-protected files via a /./ in the HTTP request.  
Phase
Modified (20050705)  
Votes
ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(4) Christey, Cox, Foat, Wall  
Comments
Christey> VULNWATCH:20020222 [VulnWatch] SecurityOffice Security Advisories: Essentia and LilHTTP web servers | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q1/0051.html | XF:lilhttp-protected-file-access(8247) | URL:http://www.iss.net/security_center/static/8247.php | BID:4153 | URL:http://www.securityfocus.com/bid/4153 | Frech> XF:lilhttp-protected-file-access(8247)