Description
The Web Publishing feature in Netscape Enterprise Server 4.x and earlier allows remote attackers to list arbitrary directories under the web server root via the INDEX command.
Affected products
- netscape / enterprise_server3.0 – 3.0
- netscape / enterprise_server4.0 – 4.0
Exploits & proofs of concept
- exploit-dbNetscape Enterprise Server 3.0/4.0 - 'Index' Disclosureby Security Research Team
Updated 10m ago · 8 sources