CVE-2009-4531: Infoleak
Published Dec 31, 2009
·Updated
httpdx 1.4.4 and earlier allows remote attackers to obtain the source code for a web page by appending a . (dot) character to the URI.
Affected Software
3 affected components
Jasper Httpdx<=1.4.4
Jasper Httpdx=1.4
Jasper Httpdx=1.4.3
Event History
Dec 31, 2009
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-4531?
CVE-2009-4531 has a medium severity rating as it allows attackers to access source code of web pages.
2
How do I fix CVE-2009-4531?
To fix CVE-2009-4531, upgrade to Httpdx version 1.4.5 or later to prevent unauthorized source code disclosure.
3
What software is affected by CVE-2009-4531?
CVE-2009-4531 affects Httpdx versions 1.4.4 and earlier.
4
Can CVE-2009-4531 be exploited remotely?
Yes, CVE-2009-4531 can be exploited remotely by attackers to obtain source code.
5
What happens if my server is vulnerable to CVE-2009-4531?
If your server is vulnerable to CVE-2009-4531, attackers can retrieve sensitive source code, potentially leading to further exploitation.