HTTP: IRIX cgi-bin Wrap

This signature detects attempts to exploit the wrap CGI script in SGI IRIX. Attackers can list the contents of Web server directories.

Extended Description

A vulnerability exists in the cgi-bin program 'wrap', as included with Irix 6.2 from SGI. A failure to validate input results in a vulnerability that allows any remote attacker to view the contents of any world readable directory remotely. This can be used to gain information that may be helpful in carrying out other attacks.

Affected Products

Sgi irix

References

BugTraq: 373

CVE: CVE-1999-0149

Short Name
HTTP:IRIX:CGI-BIN-WRAP
Severity
Minor
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
CVE-1999-0149 IRIX Wrap bid:373 cgi-bin
Release Date
04/22/2003
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Sgi

CVSS Score

7.5

Found a potential security threat?