First published: Fri Jun 17 2005(Updated: )
Yaws Webserver 1.55 and earlier allows remote attackers to obtain the source code for yaws scripts via a request to a yaw script with a trailing %00 (null).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Yaws Webserver | =1.52 | |
Yaws Webserver | =1.54 | |
Yaws Webserver | =1.53 | |
Yaws Webserver | =1.50 | |
Yaws Webserver | =1.51 | |
Yaws Webserver | =1.55 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.