Apache 1.3.20 with Multiviews enabled allows remote malicious users to view directory contents and bypass the index page via a URL containing the "M=D" query string.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apache http server 1.3.20 |