CVE-2004-1572

AJ-Fork 167 does not restrict access to directories such as (1) data, (2) inc, (3) plugins, (4) skins, or (5) tools, which allows remote attackers to list files in those directories via a direct HTTP request.
Configurations

Configuration 1 (hide)

cpe:2.3:a:aj-fork:aj-fork:167:*:*:*:*:*:*:*

History

No history.

Information

Published : 2004-12-31 05:00

Updated : 2024-02-04 16:31


NVD link : CVE-2004-1572

Mitre link : CVE-2004-1572

CVE.ORG link : CVE-2004-1572


JSON object : View

Products Affected

aj-fork

  • aj-fork