Vulnerability Name: | CVE-2000-0904 (CCN-5781) | ||||||||
Assigned: | 2000-09-01 | ||||||||
Published: | 2000-09-01 | ||||||||
Updated: | 2008-09-05 | ||||||||
Summary: | Voyager web server 2.01B in the demo disks for QNX 405 stores sensitive web client information in the .photon directory in the web document root, which allows remote attackers to obtain that information. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Obtain Information | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Fri Sep 01 2000 - 13:39:46 CDT Multiple QNX Voyager Issues Source: MITRE Type: CNA CVE-2000-0904 Source: CCN Type: OSVDB ID: 10888 QNX 405 Voyager Web Server .photon Directory Information Disclosure Source: BUGTRAQ Type: Exploit, Vendor Advisory 20000901 Multiple QNX Voyager Issues Source: BID Type: Exploit, Vendor Advisory 1648 Source: CCN Type: BID-1648 QNX Voyager Webserver Multiple Vulnerabilities Source: XF Type: UNKNOWN qnx-voyager-demo-photon(5781) | ||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||
BACK |