Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

NCSA/Apache httpd ScriptAlias Source Retrieval Vulnerability

To retrieve the contents of http://targethost/cgi-bin/script.cgi an attacker would use the following URL, provided the directory cgi-bin is redirected using ScriptAlias:
http://targethost///cgi-bin/script.cgi







 

Privacy Statement
Copyright 2009, SecurityFocus