Xerver 4.17 allows remote malicious users to (1) obtain source code of scripts via a request with a trailing "." (dot) or (2) list directory contents via a trailing null character.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
xerver xerver 4.17h |