Description
The default configuration of Apache 1.3.12 in SuSE Linux 6.4 allows remote attackers to read source code for CGI scripts by replacing the /cgi-bin/ in the requested URL with /cgi-bin-sdb/.
Remediation
References
Related Vulnerabilities
WordPress 'wp-trackback.php' SQL Injection Vulnerability (1.5)
Oracle Application Server Other Vulnerability (CVE-2000-1235)
Oracle JRE CVE-2013-0440 Vulnerability (CVE-2013-0440)
WordPress Plugin YOP Poll Multiple Cross-Site Scripting Vulnerabilities (6.3.0)
WordPress Plugin Contact Form Integrated With Google Maps Cross-Site Scripting (2.4)