|Category:||Web application abuses|
|Title:||Savant original form CGI access|
|Summary:||The newest version is still vulnerable to attack (version 2.1), it would be recommended that users cease to use this product.;; Additional information:; http://www.securiteam.com/exploits/Savant_Webserver_exposes_CGI_script_source.html|
The newest version is still vulnerable to attack (version 2.1), it would be recommended that users cease to use this product.
A security vulnerability in the Savant web server allows attackers to download the original form of CGIs (unprocessed).
This would allow them to see any sensitive information stored inside those CGIs.
BugTraq ID: 1313|
Common Vulnerability Exposure (CVE) ID: CVE-2000-0521
Bugtraq: 20000605 MDMA Advisory #5: Reading of CGI Scripts under Savant Webserver (Google Search)
XForce ISS Database: savant-source-read(4616)
|Copyright||This script is Copyright (C) 2001 SecuriTeam|
|This is only one of 58962 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.