GHDB « Hackers For Charity

GHDB

GHDB

Google Search: “error found handling the request” cocoon filetype:xml

johnny rates this entry 2 out of 10.
Submitted: 2004-07-29 04:47:08
Added by: johnny
Hits: 2728
Score: 2

Cocoon is an XML publishing framework. It allows you to define XML documents and transformations to be applied on it, to eventually generate a presentation format of your choice (HTML, PDF, SVG). For more information read http://cocoon.apache.org/2.1/overview.htmlThis Cocoon error displays library functions, cocoon version number, and full and/or relative path names.


Comments:

2004-07-29 04:49:02 (murfie): There are a whole suite of sample applications to demonstrate the power of Cocoon. These samples are available from the “welcome” page after you have downloaded, built, and installed the distribution. Each example portrays a different aspect of the vast capabilities of Cocoon … http://localhost:8080/cocoon/

Google:



2004-07-29 04:49:35 (murfie):
http://www.cirt.net/advisories/cocoon_path.shtml

Default error pages in various versions of the Apache Cocoon Java server reveal the file system path to the Cocoon installation directory.

These URLs will show the path to the Cocoon directory:

* Cocoon 2.1.4: http://[victim]/non-existing-directory/
* Cocoon 1.7.1: http://[victim]/non-existing-file.xml

Fix/Workaround:
Set custom error pages which do not reveal system information.

Vendor Status:
Vendor was contacted on 3/13/2004.



5 Responses to “GHDB”

  1. Jack says:

    Does GHDB still updates for now?

  2. Johnny says:

    The GHDB is alive and well, updated through the ExploitDB: http://www.exploit-db.com/google-dorks.

  3. The Artist says:

    Hi Johnny,been a while since I’ve came last. Aren’t you gonna update this website anymore???

  4. Johnny says:

    The GHDB is not updated and lives with the exploitdb: http://http://www.exploit-db.com. Please check out the awesome folks at Offensive Security as well: http://www.offensive-security.com!

  5. Velmurugan says:

    Is any offline view-able resources is available of this product ?

Leave a Reply