Possible server path disclosure (Unix)

Description

Cytrix has detected that adequate path names have been found.

An attacker could use this to learn the file system architecture out of possession of the affected web server.

Recommendation

Prohibit this information from being displayed to the user.

References

https://owasp.org/www-community/attacks/Full_Path_Disclosure

https://cwe.mitre.org/data/definitions/200.html

< Return to all Vulnerabilities

Bug Bounties

As pirates, we all love plundering, we all love raiding, but mostly, we all love bounties, especially Bug Bounties. Let’s talk about it. Bug Bounties

Read More »