LiteSpeed Technologies LiteSpeed Web Server 4.0.x before 4.0.15 allows remote attackers to read the source code of scripts via an HTTP request with a null byte followed by a .txt file extension.
No PoCs from references.
- https://github.com/PradhapGH/Vulner-Reports
- https://github.com/PradhapRam/Vulner-Reports
- https://github.com/noahwilliamshaffer/Target-IP-159.45.104.135