Beck IPC GmbH IPC@CHIP Network Information Disclosure Vulnerability
BID:2767
Info
Beck IPC GmbH IPC@CHIP Network Information Disclosure Vulnerability
| Bugtraq ID: | 2767 |
| Class: | Design Error |
| CVE: |
CVE-2001-1341 |
| Remote: | Yes |
| Local: | No |
| Published: | May 24 2001 12:00AM |
| Updated: | Jul 11 2009 06:06AM |
| Credit: | Discovered and posted to Bugtraq by Siberian <[email protected]> on May 21, 2001. |
| Vulnerable: |
Beck IPC GmbH IPC@CHIP Embedded-Webserver |
| Not Vulnerable: | |
Discussion
Beck IPC GmbH IPC@CHIP Network Information Disclosure Vulnerability
A vulnerability exists in IPC@CHIP which could enable a remote user to gain access to ChipCfg.cgi. A specially crafted URL for ChipCfg.cgi will return sensitive network data. ChipCfg.cgi is installed by default. The vendor reports that it can be uninstalled.
A vulnerability exists in IPC@CHIP which could enable a remote user to gain access to ChipCfg.cgi. A specially crafted URL for ChipCfg.cgi will return sensitive network data. ChipCfg.cgi is installed by default. The vendor reports that it can be uninstalled.
Exploit / POC
Beck IPC GmbH IPC@CHIP Network Information Disclosure Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Beck IPC GmbH IPC@CHIP Network Information Disclosure Vulnerability
References:
References:
- IPC@CHIP Product Homepage (Beck IPC GmbH)