Netscape Enterprise Server PageServices Information Disclosure Vulnerability
BID:7621
Info
Netscape Enterprise Server PageServices Information Disclosure Vulnerability
| Bugtraq ID: | 7621 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 16 1998 12:00AM |
| Updated: | Aug 16 1998 12:00AM |
| Credit: | The discoverer of this vulnerability is currently unknown. |
| Vulnerable: |
Netscape Enterprise Server 4.1 SP8 Netscape Enterprise Server 4.1 SP7 Netscape Enterprise Server 4.1 SP6 Netscape Enterprise Server 4.1 SP5 Netscape Enterprise Server 4.1 SP4 Netscape Enterprise Server 4.1 SP3 Netscape Enterprise Server 4.0 Netscape Enterprise Server 3.51 Netscape Enterprise Server 3.6 SP3 Netscape Enterprise Server 3.6 SP2 Netscape Enterprise Server 3.6 SP1 Netscape Enterprise Server 3.6 Netscape Enterprise Server 3.5 Netscape Enterprise Server 3.4 Netscape Enterprise Server 3.3 Netscape Enterprise Server 3.2 Netscape Enterprise Server 3.1 Netscape Enterprise Server 3.0.1 B Netscape Enterprise Server 3.0 L Netscape Enterprise Server 3.0 Netscape Enterprise Server 2.0.1 C Netscape Enterprise Server 2.0 a Netscape Enterprise Server 2.0 |
| Not Vulnerable: |
iPlanet Web Server 6.0 |
Discussion
Netscape Enterprise Server PageServices Information Disclosure Vulnerability
A vulnerability has been reported for Netscape Enterprise Server. The problem is said to occur while processing HTTP queries containing the '?PageServices' URI parameter. After processing this query the affected server may disclose the contents of established web root, possibly including sub-directories.
A vulnerability has been reported for Netscape Enterprise Server. The problem is said to occur while processing HTTP queries containing the '?PageServices' URI parameter. After processing this query the affected server may disclose the contents of established web root, possibly including sub-directories.