HTTP: Apache WebDav PROPFIND Directory Disclosure

This signature detects attempts to exploit a known vulnerability against the default configurations for Apache 1.3.12 in SuSE Linux 6.4. Attackers can use maliciously crafted WebDAV PROPFIND HTTP requests to list arbitrary directories on the affected server.

Extended Description

WebDAV (Web Distributed Authoring and Versioning) is an extension of HTTP which allows users to create, edit and share documents using the HTTP protocol. A particular REQUEST METHOD, PROPFIND, allows users to retrieve resource properties such as displayname, date last modified, and others. Apache web server as installed by SuSE 6.4 has WebDAV enabled for the entire file structure of the server. By making a specific, properly structured request to the Apache web server, it is possible to obtain information which is equivalent to a directory listing.

Affected Products

Suse linux

References

BugTraq: 1656

CVE: CVE-2000-0869

Short Name
HTTP:APACHE:WEBDAV-PROPFIND
Severity
Warning
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
Apache CVE-2000-0869 Directory Disclosure PROPFIND WebDav bid:1656
Release Date
04/22/2003
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3339
False Positive
Occasionally
Vendors

Suse

CVSS Score

5.0

Found a potential security threat?