Easy File Sharing (EFS) Web Server 4.0, when running on an NTFS file system, allows remote attackers to read arbitrary files under the web root by appending "::$DATA" to the end of a HTTP GET request, which accesses the alternate data stream.
References
Configurations
Information
Published : 2006-11-03 17:07
Updated : 2017-10-18 18:29
NVD link : CVE-2006-5714
Mitre link : CVE-2006-5714
JSON object : View
CWE
Products Affected
efs_software
- efs_web_server