header-logo
Suggest Exploit
vendor:
Anyboard
by:
SecurityFocus
6.4
CVSS
MEDIUM
Information Disclosure
200
CWE
Product Name: Anyboard
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2002

Netbula Anyboard Information Disclosure Vulnerability

A vulnerability has been reported in Netbula Anyboard that may allow a remote attacker to gain access to sensitive data. This problem is due to an information disclosure issue that can be triggered by an attacker sending specific HTTP requests to a vulnerable host. This will result in sensitive information about the system being revealed to the attacker.

Mitigation:

It is recommended that users of vulnerable systems upgrade to the latest version of the software.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/8490/info

A vulnerability has been reported in Netbula Anyboard that may allow a remote attacker to gain access to sensitive data. This problem is due to an information disclosure issue that can be triggered by an attacker sending specific HTTP requests to a vulnerable host. This will result in sensitive information about the system being revealed to the attacker.

This vulnerability may allow an attack to gather sensitive information in order to launch further attacks against a vulnerable system. 

http://www.example.com/cgi-bin/anyboard.cgi/?cmd=sinfo&all=1