CVE-2004-0335: Medium severity software602 602pro lan suite vulnerability
LAN SUITE Web Mail 602Pro, when configured to use the "Directory browsing" feature, allows remote attackers to obtain a directory listing via an HTTP request to (1) index.html, (2) cgi-bin/, or (3) users/.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-0335?
CVE-2004-0335 is considered a medium severity vulnerability due to its potential for directory traversal and unauthorized access to sensitive information.
How do I fix CVE-2004-0335?
To fix CVE-2004-0335, you should disable the 'Directory browsing' feature in LAN SUITE Web Mail configurations.
What systems are affected by CVE-2004-0335?
CVE-2004-0335 affects Software602 602Pro LAN Suite when the directory browsing feature is enabled.
Can CVE-2004-0335 lead to data exposure?
Yes, CVE-2004-0335 can lead to data exposure as it allows remote attackers to view a directory listing of files.
What types of requests can exploit CVE-2004-0335?
CVE-2004-0335 can be exploited through standard HTTP requests to specific endpoints such as index.html, cgi-bin/, or users/.