The security handler in GoAhead WebServer prior to 2.1.1 allows remote malicious users to bypass authentication and obtain access to protected web content via "an extra slash in a URL," a different vulnerability than CVE-2002-1603.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
goahead goahead webserver |
||
goahead goahead webserver 2.0 |