Total vulnerabilities in the database
mod_cgi in lighttpd 1.4.18 sends the source code of CGI scripts instead of a 500 error when a fork failure occurs, which might allow remote attackers to obtain sensitive information.
Software | From | Fixed in |
---|---|---|
lighttpd / lighttpd | 1.4.18 | 1.4.18.x |