Apache 2.2.2 - CGI Script Source Code Information Disclosure



EKU-ID: 33600 CVE: CVE-2006-4110;OSVDB-27913 OSVDB-ID:
Author: Susam Pal Published: 2006-08-09 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/19447/info

Apache is prone to an information-disclosure vulnerability because it fails to properly handle exceptional conditions.

An attacker can exploit this issue to retrieve script source code. Information obtained may aid in further attacks.

Versions 2.2.2 for Microsoft Windows is vulnerable to this issue; other versions may also be affected.

http://www.example.com/CGI-BIN/foo