Vulnerabilities > CVE-2006-4908 - Information Disclosure vulnerability in Ohio State University OSU Httpd 3.10A/3.11Alpha

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
ohio-state-university

Summary

OSU 3.11alpha and 3.10a allows remote attackers to obtain sensitive information via a URL containing an * (asterisk) wildcard, which displays all matching file and directory information.

Vulnerable Configurations

Part Description Count
Application
Ohio_State_University
2