Mywebserver · Mywebserver · CVE-2004-1557
**Name of the Vulnerable Software and Affected Versions**
MyWebServer version 1.0.3
**Description**
The issue allows remote attackers to bypass authentication, modify configuration, and read arbitrary files. This can be achieved via a direct HTTP request to API endpoints such as "/admin" or "ServerProperties.html".
**Recommendations**
For MyWebServer version 1.0.3, consider restricting access to the "/admin" and "ServerProperties.html" API endpoints to prevent unauthorized modifications and file access. As a temporary workaround, limit the functionality of these endpoints until a patch is available.