Red Hat Linux Apache Remote Username Enumeration Vulnerability
Publish Date: 21 lipca 2015
Severity: : Medium
Advisory Date: 21 lipca 2015
DESCRIPTION
Apache on Red Hat Linux with the UserDir directive enabled generates different error codes when a username exists and there is no public_html directory and when the username does not exist, which could allow remote attackers to determine valid usernames on the server.
INFORMATION EXPOSURE
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1005642