CVE-2003-1235

BRW WebWeaver 1.03 allows remote attackers to obtain sensitive server environment information via a URL request for testcgi.exe, which lists the values of environment variables and the current working directory.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:brs:webweaver:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:brs:webweaver:1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:brs:webweaver:1.0.3:*:*:*:*:*:*:*

History

20 Nov 2024, 23:46

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2003-04/0014.html - Exploit () http://archives.neohapsis.com/archives/bugtraq/2003-04/0014.html - Exploit
References () http://www.iss.net/security_center/static/11686.php - () http://www.iss.net/security_center/static/11686.php -
References () http://www.securityfocus.com/bid/7283 - () http://www.securityfocus.com/bid/7283 -

Information

Published : 2003-12-31 05:00

Updated : 2024-11-20 23:46


NVD link : CVE-2003-1235

Mitre link : CVE-2003-1235

CVE.ORG link : CVE-2003-1235


JSON object : View

Products Affected

brs

  • webweaver