source: http://www.securityfocus.com/bid/4887/info CGIScript.net provides various webmaster related tools and is maintained by Mike Barone and Andy Angrick. A vulnerability has been reported in the csPassword.cgi script developed by CGIScript.net that discloses potentially sensitive information to a user. When an error occurs with the csPassword.cgi script, it displays an error message with a lot of debugging information. http://target/csPassword.cgi?command=remove This will cause csPassword to execute the remove() function. This function is not defined and thus will cause an error page to be displayed.
Related ExploitsTrying to match CVEs (2): CVE-2002-0918, CVE-2002-0919
Trying to match OSVDBs (2): 14499, 14500
Other Possible E-DB Search Terms: CGIScript.net