Lighttpd Remote CGI Script...

- AV AC AU C I A
发布: 2005-02-15
修订: 2025-04-13

lighttpd is reported prone to an information disclosure vulnerability. Reports indicate that a NULL sequence appended to the filename of a CGI or FastCGI script will result in the script contents being served to the requestor. Information that is harvested by exploiting this vulnerability may be used to aid in further attacks launched against the target computer. This vulnerability is reported to affect lighttpd 1.3.7 and previous versions.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息