Novell NetWare Enterprise Web Server 5.1 and 6.0 allows remote attackers to obtain sensitive server information, including the internal IP address, via a direct request to (1) snoop.jsp, (2) SnoopServlet, (3) env.bas, or (4) lcgitest.nlm.
Link | Tags |
---|---|
http://www.osvdb.org/3720 | vdb entry |
http://marc.info/?l=bugtraq&m=107487862304440&w=2 | mailing list |
http://secunia.com/advisories/10711 | third party advisory |
http://www.osvdb.org/3721 | vdb entry |
http://www.osvdb.org/4952 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/14921 | vdb entry |
http://www.osvdb.org/3722 | vdb entry |
http://www.securityfocus.com/bid/9479 | vdb entry |
http://www.osvdb.org/3715 | vdb entry |