5
CVSSv2

CVE-2000-0883

Published: 14/11/2000 Updated: 10/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The default configuration of mod_perl for Apache as installed on Mandrake Linux 6.1 up to and including 7.1 sets the /perl/ directory to be browseable, which allows remote malicious users to list the contents of that directory.

Vulnerable Product Search on Vulmon Subscribe to Product

mandrakesoft mandrake linux 7.1

mandrakesoft mandrake linux 6.1

mandrakesoft mandrake linux 7.0

Exploits

source: wwwsecurityfocuscom/bid/1678/info The default configuration files for versions of mod_perl shipped with Mandrake Linux 61 through 71 contain a misconfiguration that can be a security concern in some situations The /perl directory is part of the webserver's root tree (the subdirectory tree from which files are accessable on the ...