HTTP File Server (HFS) prior to 2.2c allows remote malicious users to append arbitrary text to the log file by using the base64 representation of this text during HTTP Basic Authentication.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
hfs http file server |