Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Web Servers >> CERN httpd problem


Vulnerability Assessment Details

CERN httpd problem

Vulnerability Assessment Summary
Attempts to find the location of the remote web root

Detailed Explanation for this Vulnerability Assessment
It was possible to
get the physical location of a
virtual web directory of this host by
issuing the command :

GET /cgi-bin/ls HTTP/1.0

Usually, the less the attacker knows about your
system, the better it feels, so you should
correct this problem.

Solution : use Apache (www.apache.org) since
CERN httpd is no longer maintained

Bugtraq ID : 936
Network Security Threat Level: Low

Networks Security ID: 936

Vulnerability Assessment Copyright: This script is Copyright (C) 1999 Renaud Deraison

Cables, Connectors

FAST HP Z820 (2x) Xeon E5-2650 2.0GHz 64GB RAM 2TB HDD Nvidia Q6000 -Linux
$1099.95
FAST HP Z820 (2x) Xeon E5-2650 2.0GHz 64GB RAM 2TB HDD Nvidia Q6000 -Linux pictureSavant Smart Media Server Intel NUC KDCCP847DYE Celeron 847e 1.1GHz 4GB 30GB SSD
$119.99
Savant Smart Media Server Intel NUC KDCCP847DYE Celeron 847e 1.1GHz 4GB 30GB SSD pictureAvocent ACS16 Cyclades 16-Port Linux/PowerPC Console Server 520-489-504
$55.98
Avocent ACS16 Cyclades 16-Port Linux/PowerPC Console Server 520-489-504 pictureNetMAX Linux Server with License Number
$13.99
NetMAX Linux Server with License Number picture


Discussions

No Discussions have been posted on this vulnerability.