Vulnerabilities > CVE-1999-0678
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
NONE Availability impact
NONE Summary
A default configuration of Apache on Debian GNU/Linux sets the ServerRoot to /usr/doc, which allows remote users to read documentation files for the entire server.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 | |
OS | 1 |
Exploit-Db
description | Debian Linux 2.1 httpd Vulnerability. CVE-1999-0678 . Remote exploit for linux platform |
id | EDB-ID:19253 |
last seen | 2016-02-02 |
modified | 1999-06-17 |
published | 1999-06-17 |
reporter | anonymous |
source | https://www.exploit-db.com/download/19253/ |
title | Debian Linux 2.1 - httpd Vulnerability |
Nessus
NASL family | CGI abuses |
NASL id | DOC_BROWSABLE.NASL |
description | The /doc directory is browsable. /doc shows the contents of the /usr/doc directory, which reveals not only which programs are installed but also their versions. This plugin has been deprecated. Webmirror3 (plugin ID 10662) will identify a browsable directory. |
last seen | 2018-06-14 |
modified | 2018-06-13 |
plugin id | 10056 |
published | 2000-01-03 |
reporter | Tenable |
source | https://www.tenable.com/plugins/index.php?view=single&id=10056 |
title | /doc Directory Browsable (deprecated) |
code |
|