header-logo
Suggest Exploit
vendor:
EServ
by:
SecurityFocus
3.3
CVSS
MEDIUM
Directory Indexing
522
CWE
Product Name: EServ
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2002

EServ does not sufficiently prevent web users from being able to view directory indexes

EServ is a web server that does not sufficiently prevent web users from being able to view directory indexes. This may result in disclosure of sensitive information. An attacker can send a GET request to the web server to view the directory index.

Mitigation:

Ensure that directory indexing is disabled on the web server.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/7669/info

EServ does not sufficiently prevent web users from being able to view directory indexes. This may result in disclosure of sensitive information. 

GET /? HTTP/1.1