The Apache 1.3.x HTTP server for Windows platforms allows remote attackers to list directory contents by requesting a URL containing a large number of / characters.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Http_server | Apache | 1.3.6 (including) | 1.3.6 (including) |
Http_server | Apache | 1.3.9 (including) | 1.3.9 (including) |
Http_server | Apache | 1.3.11 (including) | 1.3.11 (including) |
Http_server | Apache | 1.3.12 (including) | 1.3.12 (including) |
Http_server | Ibm | 1.3.3 (including) | 1.3.3 (including) |
Http_server | Ibm | 1.3.6.2 (including) | 1.3.6.2 (including) |