Unrated severityNVD Advisory· Published Jun 2, 2006· Updated Apr 16, 2026
CVE-2006-2309
CVE-2006-2309
Description
The HTTP service in EServ/3 3.25 allows remote attackers to obtain sensitive information via crafted HTTP requests containing dot, space, and slash characters, which reveals the source code of script files.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- secunia.com/advisories/20059nvdPatchVendor Advisory
- www.eserv.ru/ru/news/news_detail.phpnvdPatch
- www.securityfocus.com/bid/18179nvdPatch
- secunia.com/secunia_research/2006-37/advisory/nvdVendor Advisory
- securityreason.com/securityalert/1006nvd
- www.securityfocus.com/archive/1/435415/100/0/threadednvd
- www.vupen.com/english/advisories/2006/2066nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/26741nvd
News mentions
0No linked articles in our index yet.