Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Gain root remotely >> 4D WebStar Information Disclosure


Vulnerability Assessment Details

4D WebStar Information Disclosure

Vulnerability Assessment Summary
Checks for 4D WebStar

Detailed Explanation for this Vulnerability Assessment

The remote server is running 4D WebStar Web Server.

The remote server is vulnerable to two issues :

- A possible hacker may be able to obtain the listing of a directory by appending
a star (*) to the directory name

- A possible hacker may obtain the file php.ini by requesting /cgi-bin/php.ini

Solution : Upgrade to 4D WebStar 5.3.3 or newer
Network Security Threat Level: Medium

Networks Security ID: 10721

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors

1pc NEW Panasonic Servo MHME102GCGM+MDDKT3530CA1 (by DHL or EMS) #YXH
$1000.0
1pc NEW  Panasonic Servo MHME102GCGM+MDDKT3530CA1 (by DHL or EMS) #YXH pictureNOS NEW ECS L7S7A2 Socket A462 motherboard SiS 746 AGP PCI Athlon
$18.99
NOS NEW ECS L7S7A2 Socket A462 motherboard SiS 746 AGP PCI Athlon picture[OB] ASUS ROG STRIX B250G GAMING LGA1151 M.2 Micro-ATX Motherboard with USB 3.1
$124.63
[OB] ASUS ROG STRIX B250G GAMING LGA1151 M.2 Micro-ATX Motherboard with USB 3.1 pictureHP Envy M6-1000 Series Motherboard 698395-001 698395-501 LA-8713P
$27.99
HP Envy M6-1000 Series Motherboard 698395-001 698395-501 LA-8713P picture


Discussions

No Discussions have been posted on this vulnerability.