Searching scriptalias software vulnerabilities


The Apache configuration file (httpd.conf) in O


The Apache configuration file (httpd.conf) in Oracle 9i Application Server (9iAS) uses a Location alias for /perl directory instead of a ScriptAlias, which allows remote attackers to read the source code of arbitrary CGI files via a URL containing the /perl directory instead of /cgi-bin.


Apache 2.2.2, when running on Windows, allows r


Apache 2.2.2, when running on Windows, allows remote attackers to read source code of CGI programs via a request that contains uppercase (or alternate case) characters that bypass the case-sensitive ScriptAlias directive, but allow access to the file on case-insensitive file systems.


Software vulnerabilities results 1 to 3 of 3     
Page: 1