Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-1015

Опубликовано: 07 мар. 2008
Источник: redhat
CVSS2: 5
EPSS Низкий

Описание

The is_cgi method in CGIHTTPServer.py in the CGIHTTPServer module in Python 2.5, 2.6, and 3.0 allows remote attackers to read script source code via an HTTP GET request that lacks a / (slash) character at the beginning of the URI.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=680094(CGIHTTPServer): CGI script source code disclosure

EPSS

Процентиль: 48%
0.00253
Низкий

5 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 14 лет назад

The is_cgi method in CGIHTTPServer.py in the CGIHTTPServer module in Python 2.5, 2.6, and 3.0 allows remote attackers to read script source code via an HTTP GET request that lacks a / (slash) character at the beginning of the URI.

nvd
больше 14 лет назад

The is_cgi method in CGIHTTPServer.py in the CGIHTTPServer module in Python 2.5, 2.6, and 3.0 allows remote attackers to read script source code via an HTTP GET request that lacks a / (slash) character at the beginning of the URI.

debian
больше 14 лет назад

The is_cgi method in CGIHTTPServer.py in the CGIHTTPServer module in P ...

github
больше 3 лет назад

The is_cgi method in CGIHTTPServer.py in the CGIHTTPServer module in Python 2.5, 2.6, and 3.0 allows remote attackers to read script source code via an HTTP GET request that lacks a / (slash) character at the beginning of the URI.

oracle-oval
больше 14 лет назад

ELSA-2011-0554: python security, bug fix, and enhancement update (MODERATE)

EPSS

Процентиль: 48%
0.00253
Низкий

5 Medium

CVSS2