exploit-db-mirror/platforms/cgi/webapps/25096.txt
Offensive Security fffbf04102 Updated
2013-12-03 19:44:07 +00:00

8 lines
No EOL
508 B
Text
Executable file

source: http://www.securityfocus.com/bid/12545/info
A remote information disclosure vulnerability reportedly affects AWStats. This issue is due to a failure of the application to properly validate access to sensitive data.
An attacker may leverage this issue to gain access to potentially sensitive data, possibly facilitating further attacks against an affected computer.
http://www.example.com/cgi-bin/awstats-6.4/awstats.pl?debug=1
http://www.example.com/cgi-bin/awstats-6.4/awstats.pl?debug=2