COMMAND

    tdhttp

SYSTEMS AFFECTED

    tdhttp

PROBLEM

    Following  is  based  on  a  UkR  security  team  advisory  n0. 7.
    Possibility of arbitrary file  retreival and directory listing  on
    remote host, running tdhttp (http.c, probably all its versions).

    Example:

        http://www.timduff.com/../../../../../../../../../../etc/passwd
        http://www.timduff.com/../../../../../../../../../../root/

SOLUTION

    Try another http daemon (Apache, for ex.) and disable http service
    'till that time.