PHP.exe Windows CGI for Apache may let remote users view files on the server Security Vulnerability

Description
PHP.EXE Windows CGI for Apache web server may let remote users view files on the server due to configuration error.

Impact
Remote file disclosure.

References
SecurityTracker reference

Acunetix Web Application Security Blog

Latest Article

Web Server Security and Database Server Security

Latest Whitepaper

Why File Upload Forms are a major security threat

Testimonials

“The issues detected were of major impact; if hackers would have found the security holes, they could have hacked an entire Joomla! Site.”

Robin Muilvijk
Quality & Testing Team, Joomla!