Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-1015

Опубликовано: 07 мар. 2008
Источник: redhat
CVSS2: 5
EPSS Низкий

Описание

The is_cgi method in CGIHTTPServer.py in the CGIHTTPServer module in Python 2.5, 2.6, and 3.0 allows remote attackers to read script source code via an HTTP GET request that lacks a / (slash) character at the beginning of the URI.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=680094(CGIHTTPServer): CGI script source code disclosure

EPSS

Процентиль: 48%
0.00252
Низкий

5 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 15 лет назад

The is_cgi method in CGIHTTPServer.py in the CGIHTTPServer module in Python 2.5, 2.6, and 3.0 allows remote attackers to read script source code via an HTTP GET request that lacks a / (slash) character at the beginning of the URI.

nvd
почти 15 лет назад

The is_cgi method in CGIHTTPServer.py in the CGIHTTPServer module in Python 2.5, 2.6, and 3.0 allows remote attackers to read script source code via an HTTP GET request that lacks a / (slash) character at the beginning of the URI.

debian
почти 15 лет назад

The is_cgi method in CGIHTTPServer.py in the CGIHTTPServer module in P ...

github
почти 4 года назад

The is_cgi method in CGIHTTPServer.py in the CGIHTTPServer module in Python 2.5, 2.6, and 3.0 allows remote attackers to read script source code via an HTTP GET request that lacks a / (slash) character at the beginning of the URI.

oracle-oval
почти 15 лет назад

ELSA-2011-0554: python security, bug fix, and enhancement update (MODERATE)

EPSS

Процентиль: 48%
0.00252
Низкий

5 Medium

CVSS2