The webacc servlet in Novell NetWare Enterprise Web Server 5.1 and 6.0 allows remote attackers to read arbitrary .htt files via a full pathname in the error parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Netware | Novell | 5.1 (including) | 5.1 (including) |
Netware | Novell | 6.0 (including) | 6.0 (including) |