Vulnerabilities > CVE-2002-0215 - Path Disclosure vulnerability in Agora.CGI Debug Mode

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
steve-kneizys
exploit available

Summary

Agora.cgi 3.2r through 4.0 while in debug mode allows remote attackers to determine the full pathname of the agora.cgi file by requesting a non-existent .html file, which leaks the pathname in an error message.

Exploit-Db

descriptionAgora.CGI 3/4 Debug Mode Path Disclosure Vulnerability. CVE-2002-0215. Remote exploit for cgi platform
idEDB-ID:21249
last seen2016-02-02
modified2002-01-28
published2002-01-28
reportersuperpetz
sourcehttps://www.exploit-db.com/download/21249/
titleAgora.CGI 3/4 Debug Mode Path Disclosure Vulnerability