OSVDB ID: 3233

Title: Default Web Server Page

Info

Disclosure

Jan 01, 1994

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

Description

A default file, directory or CGI program which installed by default with the web server or installed software was found. While there is no known vulnerability or exploit associated with this, default files often reveal sensitive information or contain unknown or undisclosed vulnerabilities. The presence of such files may also reveal information about the web server version or operating system.

Classification

Location: Remote/Network Access Required
Attack Type: Information Disclosure
Impact: Loss of Confidentiality
Exploit: Exploit Available
Disclosure: OSVDB Verified
OSVDB: Web Related, Best Practice

Solution

Remove the files from the web server or restrict access to them.

Products

All Vendors

Web Server

All Versions

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/36218