CVE-2005-3293 Information

Description

Xerver 4.17 allows remote attackers to (1) obtain source code of scripts via a request with a trailing .\ (dot) or (2) list directory contents via a trailing null character.

Reference

http://secunia.com/advisories/17243 http://securitytracker.com/id?1015079 http://www.osvdb.org/20075 http://www.osvdb.org/20076 http://www.securityfocus.com/bid/15135 https://exchange.xforce.ibmcloud.com/vulnerabilities/22785 https://exchange.xforce.ibmcloud.com/vulnerabilities/22786

Share on: