VYPR
Unrated severityNVD Advisory· Published Jun 2, 2006· Updated Apr 16, 2026

CVE-2006-2309

CVE-2006-2309

Description

The HTTP service in EServ/3 3.25 allows remote attackers to obtain sensitive information via crafted HTTP requests containing dot, space, and slash characters, which reveals the source code of script files.

Affected products

2
  • Etype/Eserv2 versions
    cpe:2.3:a:etype:eserv:3.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:etype:eserv:3.0:*:*:*:*:*:*:*
    • cpe:2.3:a:etype:eserv:3.25:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

8

News mentions

0

No linked articles in our index yet.