VYPR
Unrated severityNVD Advisory· Published Sep 21, 2006· Updated Jun 16, 2026

CVE-2006-4908

CVE-2006-4908

Description

OSU 3.11alpha and 3.10a allows remote attackers to obtain sensitive information via a URL containing an * (asterisk) wildcard, which displays all matching file and directory information.

Affected products

3
  • cpe:2.3:a:ohio_state_university:osu_httpd:3.10a:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:ohio_state_university:osu_httpd:3.10a:*:*:*:*:*:*:*
    • cpe:2.3:a:ohio_state_university:osu_httpd:3.11alpha:*:*:*:*:*:*:*
  • OSU/OSUllm-create
    Range: <= 3.11alpha, >= 3.10a

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.