KF Web Server /%00 bug High Medium Low Network Vulnerabilities Web application abuses KF Web Server /%00 bug SummaryRequesting a URL with '/%00' appended to it makes some versions of KF Web Server to dump the listing of the directory, thus showing potentially sensitive files. Solutionupgrade to the latest version of KF Web Server Severity Classification CVSS Base Score: 5.1 AV:N/AC:H/Au:N/C:P/I:P/A:P Related Vulnerabilities Apache Tomcat RemoteFilterValve Security Bypass VulnerabilityAN Guestbook Local File Inclusion VulnerabilityApache OFBiz Multiple Cross Site Scripting VulnerabilitiesApache Struts2 'XWork' Information Disclosure VulnerabilityApache Subversion Module Metadata Accessible