5
CVSSv2

CVE-2010-2320

Published: 02/08/2010 Updated: 17/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

bozotic HTTP server (aka bozohttpd) prior to 20100621 allows remote malicious users to list the contents of home directories, and determine the existence of user accounts, via multiple requests for URIs beginning with /~ sequences.

Vulnerable Product Search on Vulmon Subscribe to Product

eterna bozohttpd 20100512

eterna bozohttpd 20090522

eterna bozohttpd 20040218

eterna bozohttpd 20060517

eterna bozohttpd 20020730

eterna bozohttpd 20090417

eterna bozohttpd 20000427

eterna bozohttpd 20000815

eterna bozohttpd 20030313

eterna bozohttpd 20031005

eterna bozohttpd 20080303

eterna bozohttpd 20010922

eterna bozohttpd 20020913

eterna bozohttpd 19990519

eterna bozohttpd 20010812

eterna bozohttpd

eterna bozohttpd 20030409

eterna bozohttpd 20050410

eterna bozohttpd 20020710

eterna bozohttpd 20020823

eterna bozohttpd 20020804

eterna bozohttpd 20021106

eterna bozohttpd 20000825

eterna bozohttpd 20010610

eterna bozohttpd 20100509

eterna bozohttpd 20030626

eterna bozohttpd 20040808

eterna bozohttpd 20060710

eterna bozohttpd 20020803

eterna bozohttpd 20000421

eterna bozohttpd 20000426