Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

WebAPP < 0.9.9.2 index.cgi Directory Traversal Arbitrary File Access

Low

Synopsis

The remote host is vulnerable to a flaw that allows attackers to retrieve sensitive files or data.

Description

The remote host is running WebAPP, an open-source web portal application written in perl. There is a flaw in the remote version of this software that may allow an attacker to read arbitrary files on the remote host with the privileges of the web server process (httpd or root).

Solution

Upgrade to version 0.9.9.2 or higher.