HTTP_Count

 

Code: p110

Severity: Notice

 

Description: A vulnerability in the count.cgi program by Muhammad Muquit allows a remote attacker to read any GIF file on a web server by sending a specially crafted URL to the Count.cgi program on the remote machine.

Impact: Version 2.3 of Muhammad Muquit's count.cgi cgi-bin program.

Corrective: Examine the contents of the request to identify the information that was disclosed. Remove the count.cgi program from the cgi-bin directory, or upgrade to a later version at http://www.fccc.edu/users/muquit/Count.html