The Administration console for Abyss Web Server 1.0.3 allows remote attackers to read files without providing login credentials via an HTTP request to a target file that ends in a "+" character.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2002-10-03 21:00
Updated : 2008-09-05 13:29
NVD link : CVE-2002-1081
Mitre link : CVE-2002-1081
JSON object : View
CWE
Products Affected
aprelium_technologies
- abyss_web_server