Family: CGI abuses --> Category: infos
dotProject docs Directory Information Disclosure Vulnerabilities Vulnerability Scan
Vulnerability Scan Summary
Checks for docs directory information disclosure vulnerabilities in dotProject
Detailed Explanation for this Vulnerability Test
The remote web server contains a PHP application that is affected by
multiple information disclosure vulnerabilities.
The remote host is running dotProject, a web-based, open-source,
project management application written in PHP.
The installed version of dotProject discloses sensitive information
because it lets an unauthenticated attacker call scripts in the 'docs'
See also :
Remove the application's 'doc' directory.
Low / CVSS Base Score : 2
Click HERE for more information and discussions on this network vulnerability scan.