CVE Database
/

CVE-2008-0407

Back to search

CVE-2008-0407

Published: Jan 28, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

HTTP File Server (HFS) before 2.2c tags HTTP request log entries with the username sent during HTTP Basic Authentication, regardless of whether authentication succeeded, which might make it more difficult for an administrator to determine who made a remote request.

VendorProductVersions

n/a

n/a

affected
n/a

References

hfs-username-spoofing(39877)
vdb-entry
x_refsource_XF
27423
vdb-entry
x_refsource_BID
28631
third-party-advisory
x_refsource_SECUNIA
3582
third-party-advisory
x_refsource_SREASON

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now