 |
|
HTTP_Classifieds_Post
|
| |
Code:
p113
Severity: Notice
Description: Classified is a free CGI script for handling classified ads on web pages. A vulnerability in the classifieds.cgi script allows a remote attacker to specify an e-mail address that will mail arbitrary files off the system to their address.
Impact:
Any system with the classifieds.cgi script installed
Corrective: Check to see whether the classifieds.cgi script is on your system. Disable the "classifieds.cgi" script in your CGI-BIN directory until you can obtain and install an updated version that corrects this issue.
|