CVE
- Id
- 4696
- CVE No.
- CVE-2002-0304
- Status
- Candidate
- Description
- Lil HTTP Server 2.1 allows remote attackers to read password-protected files via a /./ in the HTTP request.
- Phase
- Modified (20050705)
- Votes
- ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(4) Christey, Cox, Foat, Wall
- Comments
- Christey> VULNWATCH:20020222 [VulnWatch] SecurityOffice Security Advisories: Essentia and LilHTTP web servers | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q1/0051.html | XF:lilhttp-protected-file-access(8247) | URL:http://www.iss.net/security_center/static/8247.php | BID:4153 | URL:http://www.securityfocus.com/bid/4153 | Frech> XF:lilhttp-protected-file-access(8247)