First published: Thu Mar 18 2004(Updated: )
LAN SUITE Web Mail 602Pro, when configured to use the "Directory browsing" feature, allows remote attackers to obtain a directory listing via an HTTP request to (1) index.html, (2) cgi-bin/, or (3) users/.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Software602 602pro Lan Suite |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0335 is considered a medium severity vulnerability due to its potential for directory traversal and unauthorized access to sensitive information.
To fix CVE-2004-0335, you should disable the 'Directory browsing' feature in LAN SUITE Web Mail configurations.
CVE-2004-0335 affects Software602 602Pro LAN Suite when the directory browsing feature is enabled.
Yes, CVE-2004-0335 can lead to data exposure as it allows remote attackers to view a directory listing of files.
CVE-2004-0335 can be exploited through standard HTTP requests to specific endpoints such as index.html, cgi-bin/, or users/.