Computer Security
[EN] securityvulns.ru
no-pyccku



thttpd information leak
Published:01.02.2007
Source:BUGTRAQ
SecurityVulns ID:7138
Type:remote
Level:3/10
Description:If thttpd is started from system root, system root is used as web server root directory.
Affected:THTTPD : thttpd 2.25
CVE:CVE-2007-0664 (thttpd before 2.25b-r6 in Gentoo Linux is started from the system root directory (/) by the Gentoo baselayout 1.12.6 package, which allows remote attackers to read arbitrary files.)
Original documentdocumentGENTOO, [ GLSA 200701-28 ] thttpd: Unauthenticated remote file access (01.02.2007)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru