The Administration console for Abyss Web Server 1.0.3 allows remote malicious users to read files without providing login credentials via an HTTP request to a target file that ends in a "+" character.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
aprelium technologies abyss web server 1.0.3 |
||
aprelium technologies abyss web server 1.0 |