LiteSpeed.Web.Server.NullByte.Information.Disclosure

description-logoDescription

This indicates an attempt to exploit an information disclosure vulnerability in LiteSpeed Web Server.
The vulnerability is caused by an error that occurs when the software handles a malicious HTTP request. It allows a remote attacker to read web application source code by sending a crafted request containing "%00.".

affected-products-logoAffected Products

Lite Speed Technologies LiteSpeed Web Server 3.2.3

Impact logoImpact

Information Disclosure.

recomended-action-logoRecommended Actions

Upgrade to the latest version, available from the web site.
http://litespeedtech.com/

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)