ttawebtop.cgi in Tarantella Enterprise 3.20 on SPARC Solaris and Linux, and 3.1x and 3.0x including 3.11.903, allows remote attackers to view directory contents via an empty pg parameter.
References
Link | Resource |
---|---|
http://www.tarantella.com/security/bulletin-03.html | Patch Vendor Advisory |
http://marc.info/?l=bugtraq&m=101190195430376&w=2 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2002-05-15 21:00
Updated : 2016-10-17 19:17
NVD link : CVE-2002-0203
Mitre link : CVE-2002-0203
JSON object : View
CWE
Products Affected
tarantella
- tarantella_enterprise