OSVDB ID: 9821

Title: Regulus custchoice.php Arbitrary Customer Information Disclosure

Info

Disclosure

Sep 07, 2004

Discovery

Unknown

Dates

Exploit

Sep 07, 2004

Solution

Unknown

Description

Regulus contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when an attacker submits a specially crafted URL, which will disclose user connection logs resulting in a loss of confidentiality.

Classification

Location: Remote/Network Access Required
Attack Type: Information Disclosure
Impact: Loss of Confidentiality
Exploit: Exploit Available
OSVDB: Web Related

Solution

Currently, there are no known upgrades, patches, or workarounds available to correct this issue.

Products

S.A.F.E. Inc.

Regulus

2.2-95

References

Credit

  • - masud_libraBrand New Doo Doohotmail.com -


Direct URL: http://osvdb.org/36218