CVE

Id
6019  
CVE No.
CVE-2002-1635  
Status
Candidate  
Description
The Apache configuration file (httpd.conf) in Oracle 9i Application Server (9iAS) uses a Location alias for /perl directory instead of a ScriptAlias, which allows remote attackers to read the source code of arbitrary CGI files via a URL containing the /perl directory instead of /cgi-bin.  
Phase
Assigned (20050328)  
Votes
None (candidate not yet proposed)  
Comments