CVE-2002-1677 Information

Description

14all.cgi 1.1p15 in mrtgconfig allows remote attackers to determine the physical path to the web root directory via a request with an invalid cfg parameter which generates an error message that reveals the path.

Reference

http://archives.neohapsis.com/archives/bugtraq/2002-01/0421.html http://online.securityfocus.com/archive/1/254278 http://www.securityfocus.com/bid/4021 https://exchange.xforce.ibmcloud.com/vulnerabilities/8070

Share on: