[23576] in bugtraq

home help back first fref pref prev next nref lref last post

Re: IRM Security Advisory 002: Netware Web Server Source Disclosure

daemon@ATHENA.MIT.EDU (Matthew Firth)
Thu Dec 20 17:35:02 2001

Date: Thu, 20 Dec 2001 15:48:56 +1100 (EST)
From: Matthew Firth <matthew.firth@matera.net.au>
To: IRM Security Advisories <advisories@irmplc.com>
Cc: Bugtraq <bugtraq@securityfocus.com>
In-Reply-To: <1008762265.8577.42.camel@jubei>
Message-ID: <Pine.LNX.4.30.0112201542090.17255-100000@border.matera.net.au>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII


I have had someone try to verify this problem for me & his results were as
follows:

NetWare 5.1 SP2A: Vulnerable.
NetWare 5.1 SP3: Not Vulnerable.

Apparent Solution: Apply NetWare 5.1 SP3  [It's been released for nearly
6 months].

cheers,

matthew

On 19 Dec 2001, IRM Security Advisories wrote:

> =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-
> IRM Security Advisory No. 002
>
> Netware Web Server 5.1 Sample Page Source Disclosure
>
> Vulnerablity Type / Importance: Information Leakage / High
>
> Problem discovered: November 18th 2001
> Vendor contacted: November 20th 2001, November 29th 2001
> Advisory published: December 11th 2001
> =-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-

<snip>


home help back first fref pref prev next nref lref last post