Synopsis
The remote web server contains a Java application that is affected by an information disclosure vulnerability.
Description
The remote host is running 12Planet Chat Server - a web-based chat server written in Java.
There is a flaw in this version which allows an attacker to obtain the physical path of the installation by sending a malformed request to this service.
Knowing this information will help an attacker to make more focused attacks.
Solution
The solution is unknown.
Plugin Details
File Name: 12planet_chat_server_path_disclosure.nasl
Supported Sensors: Nessus
Vulnerability Information
Exploit Ease: Exploits are available
Reference Information
BID: 7355