header-logo
Suggest Exploit
vendor:
Apache HTTP Server
by:
SecurityFocus
7.5
CVSS
HIGH
Information Disclosure
200
CWE
Product Name: Apache HTTP Server
Affected Version From: 2.2.2002
Affected Version To: 2.2.2002
Patch Exists: YES
Related CWE: N/A
CPE: apache:http_server
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Microsoft Windows
2006

Apache Information Disclosure Vulnerability

Apache is prone to an information-disclosure vulnerability because it fails to properly handle exceptional conditions. An attacker can exploit this issue to retrieve script source code. Information obtained may aid in further attacks.

Mitigation:

Ensure that Apache is configured to properly handle exceptional conditions.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/19447/info

Apache is prone to an information-disclosure vulnerability because it fails to properly handle exceptional conditions.

An attacker can exploit this issue to retrieve script source code. Information obtained may aid in further attacks.

Versions 2.2.2 for Microsoft Windows is vulnerable to this issue; other versions may also be affected.

http://www.example.com/CGI-BIN/foo