about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , NCSA/Apache httpd ScriptAlias Source Retrieval Vulnerability


Title NCSA/Apache httpd ScriptAlias Source Retrieval Vulnerability
Published 1999-09-25-12:00AM
Updated 1999-09-25-12:00AM
Class Input Validation Error
CVE   CVE-1999-0236
Remote  Yes
Local  Yes
Credit  Discovery information is not currently known - this vulnerability is associated with CVE-1999-0236.
Vulnerable  NCSA httpd 1.5 aexport
NCSA httpd 1.4.2
NCSA httpd 1.4.1
NCSA httpd 1.4
NCSA httpd 1.3
Apache Software Foundation Apache 0.8.14
Apache Software Foundation Apache 0.8.11
Not Vulnerable  Apache Software Foundation Apache 1.0
Code   To retrieve the contents of http://targethost/cgi-bin/script.cgi an attacker would use the following URL, provided the directory cgi-bin is redirected using ScriptAlias:
http://targethost///cgi-bin/script.cgi
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 17 Dec 2009 22:20:47 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
news for c www.sikoau news for c 200 /compo www.sex h mud girl how to hac www.mediap Big boobes xfire BARBIE C...moreca www.Indian vivvo/inde Hello, nic Aks ios 12.3 Fotoartisb sexy hindi mondorossi OpenSSH_3. lesbos hav news for c farest sex php-nuke 2 asex gbook+modu www.tamilx roi046597. WwwHelen. 860105.com sexsy film www.trisha www.Free s inside edi ceca se je CENTOS 5 www.sexyco IIS+6.0+%2 Moco space Wwe phpMyAdmin inlcude fi www.nameth www.yj2sh. ftpd 0.9.2 Sex video Free downl SHOW IMAGE nakedpictu