AI Score
Confidence
Low
EPSS
Percentile
84.4%
bozotic HTTP server (aka bozohttpd) before 20100621 allows remote attackers to list the contents of home directories, and determine the existence of user accounts, via multiple requests for URIs beginning with /~ sequences.
bugs.debian.org/cgi-bin/bugreport.cgi?bug=590298
secunia.com/advisories/40737
security-tracker.debian.org/tracker/CVE-2010-2320
www.eterna.com.au/bozohttpd/CHANGES
bugs.launchpad.net/ubuntu/+source/bozohttpd/+bug/582473
exchange.xforce.ibmcloud.com/vulnerabilities/60812