Exposed .bash_history at http://21days2017.mtncameroon.net/.bash_history
Medium
M
MTN Group
Submitted None
Actions:
Reported by
xlife
Vulnerability Details
Technical details and impact analysis
## Summary:
Dear Security Team,
I found some dangerous urls on your servers that reveal important informations about the servers configuration themself and that are very interesting from a hacker point of view.
## Steps To Reproduce:
http://21days2017.mtncameroon.net/.bash_history
##Remediation
* disable that kind of function on production server
* protect them with strong credentials
* use ip restriction
Best regards,
Vishu10x00 ❤️
## Impact
While this does not represent a real security issue, this reveal important informations about your system and could be used by a malicious user for a future attack.
Report Details
Additional information and metadata
State
Closed
Substate
Resolved
Submitted
Weakness
Information Disclosure