CVE-2002-0918
N/A
N/A
Summary
CGIScript.net csPassword.cgi leaks sensitive information such as the pathname of the server in debug messages that are presented when the script fails, which allows remote attackers to obtain the information via a "remove" option in the command parameter, which generates an error.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.iss.net/security_center/static/9221.php
- http://www.securityfocus.com/bid/4887
- http://online.securityfocus.com/archive/1/274727
References
- http://www.iss.net/security_center/static/9221.php
- http://www.securityfocus.com/bid/4887
- http://online.securityfocus.com/archive/1/274727
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.