LiteServe Web Server File Disclosure Vulnerability
BID:6042
Info
LiteServe Web Server File Disclosure Vulnerability
| Bugtraq ID: | 6042 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 24 2002 12:00AM |
| Updated: | Oct 24 2002 12:00AM |
| Credit: | Discovery credited to Tamer Sahin. |
| Vulnerable: |
Perception LiteServe 2.0 |
| Not Vulnerable: |
Perception LiteServe 2.0 2 |
Discussion
LiteServe Web Server File Disclosure Vulnerability
A vulnerability has been discovered in LiteServe Web Server v2.0.
By sending a maliciously constructed HTTP request to the target server, it is possible for a remote attacker to access password protected files and folders.
Exploiting this issue may allow an attacker to gain information needed to launch further attacks against the target server and legitimate users.
A vulnerability has been discovered in LiteServe Web Server v2.0.
By sending a maliciously constructed HTTP request to the target server, it is possible for a remote attacker to access password protected files and folders.
Exploiting this issue may allow an attacker to gain information needed to launch further attacks against the target server and legitimate users.
Exploit / POC
LiteServe Web Server File Disclosure Vulnerability
This vulnerability can be exploited with a Web browser.
This vulnerability can be exploited with a Web browser.
Solution / Fix
LiteServe Web Server File Disclosure Vulnerability
Solution:
The vendor has fixed this issue in LiteServe 2.02.
Perception LiteServe 2.0
Solution:
The vendor has fixed this issue in LiteServe 2.02.
Perception LiteServe 2.0
-
Perception LiteServe v2.02
http://www.liteserve.net