Short Name |
HTTP:WASD:CONF-ACCESS |
---|---|
Severity |
Medium |
Recommended |
No |
Category |
HTTP |
Keywords |
VMS WASD HTTP Server |
Release Date |
2003/04/22 |
Update Number |
1213 |
Supported Platforms |
di-5.3+, idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability in the WASD HTTP Server for OpenVMS. Default installations of 1.0 and earlier are vulnerable. Attackers can download the configuration file for the server and obtain information on the ACL and internal directory structure.
Confidential information could be disclosed that may assist an attacker to execute further attacks.