Korean
<< Back
VID 21046
Severity 40
Port 80, ...
Protocol TCP
Class CGI
Detailed Description The "get32.exe" CGI program is installed in the relevant web server. This CGI has a well known security flaw that lets anyone execute arbitrary commands with the privileges of the http daemon (root or nobody).

* References:
http://www.securityfocus.com/bid/770
Recommendation Remove the "get32.exe" file from /cgi-bin directory.
Related URL CVE-1999-0885 (CVE)
Related URL (SecurityFocus)
Related URL (ISS)