CVE Vulnerabilities

CVE-2006-2309

Published: Jun 02, 2006 | Modified: Oct 18, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

The HTTP service in EServ/3 3.25 allows remote attackers to obtain sensitive information via crafted HTTP requests containing dot, space, and slash characters, which reveals the source code of script files.

Affected Software

Name Vendor Start Version End Version
Eserv Etype 3.0 (including) 3.0 (including)
Eserv Etype 3.25 (including) 3.25 (including)

References