| VID |
22118 |
| Severity |
40 |
| Port |
5000 |
| Protocol |
TCP |
| Class |
Metainfo |
| Detailed Description |
The remote MetaInfo server allows remote users to read arbitrary files by entering "../" in the URL. For instance :
GET ../smusers.txt HTTP/1.0
will read "smusers.txt". |
| Recommendation |
Disable the server or upgrade. |
| Related URL |
CVE-1999-0268 (CVE) |
| Related URL |
(SecurityFocus) |
| Related URL |
5231 (ISS) |
|