This is a potential security issue, you are being redirected to https://nvd.nist.gov
NVD Dashboard
News
Email List
FAQ
Visualizations
Search & Statistics
Full Listing
Categories
Data Feeds
Vendor Comments
CVSS V3 Calculator
CVSS V2 Calculator
CPE Dictionary
CPE Search
CPE Statistics
SWID
Checklist (NCP) Repository
800-53 Controls
SCAP Validated Tools
SCAP
USGCB
Vulnerability Search
A default configuration of Apache on Debian GNU/Linux sets the ServerRoot to /usr/doc, which allows remote users to read documentation files for the entire server.
ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.
test-cgi program allows an attacker to list files on the server.