Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Web Servers >> CERN httpd problem


Vulnerability Assessment Details

CERN httpd problem

Vulnerability Assessment Summary
Attempts to find the location of the remote web root

Detailed Explanation for this Vulnerability Assessment
It was possible to
get the physical location of a
virtual web directory of this host by
issuing the command :

GET /cgi-bin/ls HTTP/1.0

Usually, the less the attacker knows about your
system, the better it feels, so you should
correct this problem.

Solution : use Apache (www.apache.org) since
CERN httpd is no longer maintained

Bugtraq ID : 936
Network Security Threat Level: Low

Networks Security ID: 936

Vulnerability Assessment Copyright: This script is Copyright (C) 1999 Renaud Deraison

Cables, Connectors

Juniper Networks EX 4200 (EX4200-48P) 48-Ports
$649.99
Juniper Networks EX 4200 (EX4200-48P) 48-Ports pictureJuniper Networks 740-013111
$40.0
Juniper Networks 740-013111 pictureJuniper Networks 740-020424
$32.0
Juniper Networks 740-020424 picture^^ JUNIPER NETWORKS MODEL SSG5 SECURITY GATEWAY W/ 7 PORTS
$40.0
^^ JUNIPER NETWORKS MODEL SSG5 SECURITY GATEWAY W/ 7 PORTS picture


Discussions

No Discussions have been posted on this vulnerability.