RE: Apache Artificially Long Slash Path Directory Listing Vulnera bility -- FILE READ ACCESS

From: Brian Dinello (brian.dinelloat_private)
Date: Fri Jul 27 2001 - 15:12:11 PDT

  • Next message: cr4zybird: "TXT or HTML? -- IE NEW BUG"

    As we don't have access to all versions of Apache on all platforms, I can't
    say for certain that this will work on all of them.  The version that we
    have successfully tested on with 100% consistency is Apache 1.3.12 on NT4.  
    
    Please let me know if you duplicate this success on any other platforms.
    
    Brian
    
    -----Original Message-----
    From: Moorjani uday [mailto:moorjaniat_private]
    Sent: Friday, July 27, 2001 1:47 PM
    To: Brian Dinello
    Cc: bugtraqat_private
    Subject: Re: Apache Artificially Long Slash Path Directory Listing
    Vulnerability -- FILE READ ACCESS
    
    
    Hi sir,
    
    I seem to have tested your statings on Apache AdvanceExtranetServer 1.3.12
    on Mandrake Corporate Server 1.01 and the following still seems to give me
    my default Apache page, please do correct me if I'm wrong though.
    
    Uday Moorjani
    



    This archive was generated by hypermail 2b30 : Fri Jul 27 2001 - 15:34:43 PDT