HTTP_Classifieds_Post

 

Code: p113

Severity: Notice

 

Description: Classified is a free CGI script for handling classified ads on web pages. A vulnerability in the classifieds.cgi script allows a remote attacker to specify an e-mail address that will mail arbitrary files off the system to their address.

Impact: Any system with the classifieds.cgi script installed

Corrective: Check to see whether the classifieds.cgi script is on your system. Disable the "classifieds.cgi" script in your CGI-BIN directory until you can obtain and install an updated version that corrects this issue.