Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Alibaba Multiple CGI Vulnerabilties

There are several CGI programs that ship with the Alibaba webserver. Many of these do not do proper input handling, and therefore will allow requests for access to files outside of normal or safe webserver practice. This results in various situations where an attacker can view, overwrite, create and delete files anywhere on the server.







 

Privacy Statement
Copyright 2008, SecurityFocus