Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0410 (HTTP File Server)

BugsAlert Home > CVE-2008-0410 (HTTP File Server)
 
 

HTTP File Server (HFS) before 2.2c allows remote attackers to obtain configuration and usage details by using an id element such as %version% in HTTP Basic Authentication instead of a username and password, as demonstrated by placing this id element in the userinfo subcomponent of a URL.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0410

Learn more about CVE-2008-0410 (HTTP File Server)
 
Tags: cve-2008-0410 http file server

Related Items

      HPSYSDRV

      Bugtraq: ZDI-07-068: Apple QuickTime Uncompressedfile Opcode Stack Overflow Vulnerability

      Brief: Microsoft patches severe IE browser flaws

      CVE-2007-6532 (Xfce)

      Setting Up Your Own Certificate Authority with GnoMint

      MAL_VUNDO-1

      Bugtraq: Re: Standing Up Against German Laws - Project HayNeedle

 

Pixel