|
Vulnerability tdhttp Affected tdhttp Description Following is based on a UkR security team advisory n0. 7. Possibility of arbitrary file retreival and directory listing on remote host, running tdhttp (http.c, probably all its versions). Example: http://www.timduff.com/../../../../../../../../../../etc/passwd http://www.timduff.com/../../../../../../../../../../root/ Solution Try another http daemon (Apache, for ex.) and disable http service 'till that time.