5

CVE-2010-2320

Exploit
bozotic HTTP server (aka bozohttpd) before 20100621 allows remote attackers to list the contents of home directories, and determine the existence of user accounts, via multiple requests for URIs beginning with /~ sequences.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Eterna ≫ Bozohttpd Version <= 20100617
Eterna ≫ Bozohttpd Version 19990519
Eterna ≫ Bozohttpd Version 20000421
Eterna ≫ Bozohttpd Version 20000426
Eterna ≫ Bozohttpd Version 20000427
Eterna ≫ Bozohttpd Version 20000815
Eterna ≫ Bozohttpd Version 20000825
Eterna ≫ Bozohttpd Version 20010610
Eterna ≫ Bozohttpd Version 20010812
Eterna ≫ Bozohttpd Version 20010922
Eterna ≫ Bozohttpd Version 20020710
Eterna ≫ Bozohttpd Version 20020730
Eterna ≫ Bozohttpd Version 20020803
Eterna ≫ Bozohttpd Version 20020804
Eterna ≫ Bozohttpd Version 20020823
Eterna ≫ Bozohttpd Version 20020913
Eterna ≫ Bozohttpd Version 20021106
Eterna ≫ Bozohttpd Version 20030313
Eterna ≫ Bozohttpd Version 20030409
Eterna ≫ Bozohttpd Version 20030626
Eterna ≫ Bozohttpd Version 20031005
Eterna ≫ Bozohttpd Version 20040218
Eterna ≫ Bozohttpd Version 20040808
Eterna ≫ Bozohttpd Version 20050410
Eterna ≫ Bozohttpd Version 20060517
Eterna ≫ Bozohttpd Version 20060710
Eterna ≫ Bozohttpd Version 20080303
Eterna ≫ Bozohttpd Version 20090417
Eterna ≫ Bozohttpd Version 20090522
Eterna ≫ Bozohttpd Version 20100509
Eterna ≫ Bozohttpd Version 20100512
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.39% 0.817
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=590298
Exploit
http://www.eterna.com.au/bozohttpd/CHANGES
http://secunia.com/advisories/40737
Vendor Advisory
http://security-tracker.debian.org/tracker/CVE-2010-2320
https://bugs.launchpad.net/ubuntu/+source/bozohttpd/+bug/582473
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/60812