Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> CGI abuses >> sglMerchant Information Disclosure Vulnerability


Vulnerability Assessment Details

sglMerchant Information Disclosure Vulnerability

Vulnerability Assessment Summary
sglMerchant Information Disclosure Vulnerability

Detailed Explanation for this Vulnerability Assessment

A CGI (view_item) that is a part of sglMerchant is installed.

This CGI suffers from a security vulnerability that makes it possible to escape
the bounding HTML root directory and read arbitrary system files.

Solution: Contact the author of the program
Network Security Threat Level: High

Additional information:
http://www.securiteam.com/unixfocus/5KP012K5FK.html

Networks Security ID: 3309

Vulnerability Assessment Copyright: This script is Copyright (C) 2001 SecuriTeam

Cables, Connectors

Lenovo Ultraslim 0A34032 Keyboard and Mouse - USB Wireless RF Keyboard - 103 Key
$68.95
Lenovo Ultraslim 0A34032 Keyboard and Mouse - USB Wireless RF Keyboard - 103 Key pictureNew 32Wh 14.4V L15L4A01 battery for Lenovo 100-15IBD L15S4A01 L15M4A01 L15E4A01
$38.69
New 32Wh 14.4V L15L4A01 battery for Lenovo 100-15IBD L15S4A01 L15M4A01 L15E4A01 pictureLENOVO G560 15.6" SCREEN AND PARTS FOR SALE 
$45.0
LENOVO G560 15.6IBM KVM Cable 4 11/12ft VGA 2x PS/2 2x RJ45 Conversion Cable - 32P1654
$12.24
IBM KVM Cable 4 11/12ft VGA 2x PS/2 2x RJ45 Conversion Cable - 32P1654 picture


Discussions

No Discussions have been posted on this vulnerability.