HTTP: KeyFocus KF Web Server Directory Traversal

This signature detects directory traversal attempts against the KeyFocus Web Server. Attackers can send a maliciously crafted URL that consists of consecutive periods to traverse to the base of the filesystem. Attackers can view only the file types that are supported by the server-supported MIME types, which limits the severity of the attack.

Extended Description

Remote attackers could exploit this vulnerability to bypass the web directory restriction and access any MIME-type file on the affected server.

Short Name
HTTP:MISC:KEYFOCUS-KF-DIRTRAV
Severity
Warning
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
Directory KF KeyFocus Server Traversal Web
Release Date
04/22/2003
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown

Found a potential security threat?