Savant Web Server CGI Source Code Disclosure Vulnerability
BID:1313
Info
Savant Web Server CGI Source Code Disclosure Vulnerability
| Bugtraq ID: | 1313 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Jun 05 2000 12:00AM |
| Updated: | Jun 05 2000 12:00AM |
| Credit: | Posted to BugTraq on June 5, 2000 by "Drew" <[email protected]> |
| Vulnerable: |
Michael Lamont Savant WebServer 2.1 |
| Not Vulnerable: | |
Discussion
Savant Web Server CGI Source Code Disclosure Vulnerability
Omitting the HTTP version from a "GET" request for a CGI script to the Savant Web Server discloses the source code of the script.
Omitting the HTTP version from a "GET" request for a CGI script to the Savant Web Server discloses the source code of the script.
Solution / Fix
References
Savant Web Server CGI Source Code Disclosure Vulnerability
References:
References: