|
|
| |
| LiteServe is a powerful, full-featured Web, email and FTP server. This server software is perfect for personal websites or commercial sites with high traffic demands and multiple domains. All the services that you need work together efficiently in a single program to provide you with a feature-packed server solution that is easy to setup, manage, and monitor. It is possible to construct a web request which is capable of accessing the contents of password protected files/folders on the Liteserve Web Server This vulnerability may only be exploited to access password-protected files in sub-folders of wwwroot. |
| |
Credit:
The information has been provided by Tamer Sahin.
|
| |
Vulnerable systems:
* Liteserve Web Server version 2.0
Exploit:
http://host/./secret/
|
|
|