Several versions of the 'icat' CGI allow a remote
user to read arbitrary file on the target system. Make sure you
are running the latest version of icat.
Solution : Upgrade to the latest version of icat
Risk factor : High
BugTraq ID: 2126|
Common Vulnerability Exposure (CVE) ID: CVE-1999-1069
Bugtraq: 19971108 Security bug in iCat Suite version 3.0 (Google Search)
XForce ISS Database: icat-carbo-server-vuln(1620)
|Copyright||This script is Copyright (C) 1999 Renaud Deraison|
|This is only one of 74190 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.