 |
|
HTTP_uname _a command attempt
|
| |
Code:
p625
Severity: Warning
Description: Attempted uname command access via web
Impact:
Attempt to gain information on the host operating system using the uname
command.
Corrective: Webservers should not be allowed to view or execute files and binaries
outside of it's designated web root or cgi-bin. This command may also be
requested on a command line should the attacker gain access to the machine.
|