Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> CGI abuses >> Post-Nuke information disclosure (2)


Vulnerability Assessment Details

Post-Nuke information disclosure (2)

Vulnerability Assessment Summary
Determine if a remote host is vulnerable to the opendir.php vulnerability

Detailed Explanation for this Vulnerability Assessment

The remote host is running post-nuke. It is possible to use it
to acertain the full path to its installation on the server
or the name of the database used, by doing a request like :

/modules.php?op=modload&name=Sections&file=index&req=viewarticle&artid=

A possible hacker may use these flaws to gain a more intimate knowledge
of the remote host.

Solution : Change the members list rights to admins only, or disable
the members list module completely
Network Security Threat Level: Low

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2003 Tenable Network Security

Cables, Connectors

Samsung 850 EVO mSATA 250GB SATA SSD Internal Solid State Drive MZ-M5E250
$89.99
Samsung 850 EVO mSATA 250GB SATA SSD  Internal Solid State Drive MZ-M5E250 pictureKingston SSDNow V300 120GB 2.5 inch SATA3 Solid State Drive
$39.49
Kingston SSDNow V300 120GB 2.5 inch SATA3 Solid State Drive pictureAPPLE MACBOOK PRO 13 INCH LAPTOP REFURBISHED WITH 256 SOLID STATE DRIVE
$199.95
APPLE MACBOOK PRO 13 INCH LAPTOP REFURBISHED WITH 256 SOLID STATE DRIVE pictureKingston Digital 120GB SSDNow UV400 SATA 3 2.5" Solid State Drive SUV400S37/120G
$17.99
Kingston Digital 120GB SSDNow UV400 SATA 3 2.5


Discussions

No Discussions have been posted on this vulnerability.