| |||||||||||||
| Test ID: | 1.3.6.1.4.1.25623.1.0.10352 |
| Category: | CGI abuses |
| Title: | Netscape Server ?wp bug |
| Summary: | Make a request like http://www.example.com/?wp-cs-dump |
| Description: | Requesting a URL with special tags such as '?wp-cs-dump' appended to it makes some Netscape servers dump the listing of the page directory, thus revealing the existence of potentially sensitive files to an attacker. Solution : disable the 'web publishing' feature of your server Risk factor : Medium |
| Cross-Ref: |
BugTraq ID: 1063 Common Vulnerability Exposure (CVE) ID: CVE-2000-0236 Bugtraq: 20000317 [SAFER 000317.EXP.1.5] Netscape Enterprise Server and '?wp' tags (Google Search) http://www.securityfocus.com/templates/archive.pike?list=1&msg=38D2173D.24E39DD0@relaygroup.com http://www.securityfocus.com/bid/1063 XForce ISS Database: netscape-server-directory-indexing |
| Copyright | This script is Copyright (C) 2000 Renaud Deraison |
| This is only one of 32582 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |
|