14all.cgi 1.1p15 in mrtgconfig allows remote attackers to determine the physical path to the web root directory via a request with an invalid cfg parameter, which generates an error message that reveals the path.
References
Configurations
Information
Published : 2002-12-30 21:00
Updated : 2017-07-10 18:29
NVD link : CVE-2002-1677
Mitre link : CVE-2002-1677
JSON object : View
CWE
Products Affected
mrtg
- mrtgconfig