Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.14847
Category:CGI abuses
Title:Vignette Application Portal Information Disclosure
Summary:NOSUMMARY
Description:Description:

The remote host is running Vignette Application Portal, a commercially available
portal suite.

There is an information disclosure vulnerability in the remote version
of this software. An attacker can request the diagnostic utility which
will disclose information about the remote site by requesting /portal/diag/.


See also : http://www.atstake.com/research/advisories/2004/a092804-1.txt
Solution : Restrict access to the diag directory
Risk factor : Medium

Cross-Ref: BugTraq ID: 11267
Common Vulnerability Exposure (CVE) ID: CVE-2004-0917
@stake Security Advisory: A092804-1
http://www.atstake.com/research/advisories/2004/a092804-1.txt
http://www.securityfocus.com/bid/11267
http://securitytracker.com/id?1011447
XForce ISS Database: vignette-diagnostic-obtain-info(17530)
https://exchange.xforce.ibmcloud.com/vulnerabilities/17530
CopyrightThis script is Copyright (C) 2003 Tenable Network Security

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.