Cart32 "expdate" Administrative Information Disclosure Vulnerability
BID:1358
Info
Cart32 "expdate" Administrative Information Disclosure Vulnerability
| Bugtraq ID: | 1358 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | May 03 2000 12:00AM |
| Updated: | May 03 2000 12:00AM |
| Credit: | Discovered by and posted to Bugtraq on May 3, 2000 by Cassius <[email protected]>. |
| Vulnerable: |
McMurtrey/Whitaker & Associates Cart32 3.0 |
| Not Vulnerable: | |
Discussion
Cart32 "expdate" Administrative Information Disclosure Vulnerability
By appending the string "/expdate" to a request for the cart32.exe executable, (http: //target/cgi-bin/cart32.exe/expdate) an attacker can access an error message followed by a debugging page containing the server variables, the Cart32 administration directory and possibly the contents of the cgi-bin.
By appending the string "/expdate" to a request for the cart32.exe executable, (http: //target/cgi-bin/cart32.exe/expdate) an attacker can access an error message followed by a debugging page containing the server variables, the Cart32 administration directory and possibly the contents of the cgi-bin.