ID

VAR-200904-0651


TITLE

MiniWeb Source Code Information Disclosure Vulnerability

Trust: 0.3

sources: BID: 34565

DESCRIPTION

MiniWeb is prone to a vulnerability that lets attackers access source code because it fails to properly sanitize user-supplied input. An attacker can exploit this vulnerability to retrieve arbitrary files from the vulnerable computer in the context of the webserver process. Information obtained may aid in further attacks. We don't know which versions of MiniWeb are affected. We will update this BID when further details are available.

Trust: 0.3

sources: BID: 34565

AFFECTED PRODUCTS

vendor:stanleymodel:huang miniwebscope:eqversion:0

Trust: 0.3

sources: BID: 34565

THREAT TYPE

network

Trust: 0.3

sources: BID: 34565

TYPE

Input Validation Error

Trust: 0.3

sources: BID: 34565

EXTERNAL IDS

db:BIDid:34565

Trust: 0.3

sources: BID: 34565

REFERENCES

url:http://sourceforge.net/projects/miniweb

Trust: 0.3

url:/archive/1/502736

Trust: 0.3

sources: BID: 34565

CREDITS

e.wiZz!

Trust: 0.3

sources: BID: 34565

SOURCES

db:BIDid:34565

LAST UPDATE DATE

2022-05-17T01:56:43.745000+00:00


SOURCES UPDATE DATE

db:BIDid:34565date:2009-04-17T21:36:00

SOURCES RELEASE DATE

db:BIDid:34565date:2009-04-16T00:00:00