Opened 3 years ago

Last modified 3 years ago

#2159 new task

Concern expressed over awstats file

Reported by: jive Owned by: sac@…
Priority: normal Milestone:
Component: Systems Admin Keywords:
Cc:

Description

Email sent to info@… expressed concern over an awstats file that is publicly visible on the internet.

Hello, One of our engineers was googling a webdav issue and came across this page.

(removed url incase it should be private)

It seems like OSGEO is exposing a large amount of data regarding private directory structures to the internet. It doesn't seem to me like this was intentional and access to that data could lead to a business's compromise.

I figured I'd reach out to you in case you weren't aware of this exposure.

Thanks

Change History (1)

comment:1 Changed 3 years ago by fgdrf

Is it about the same log files mentioned in #2142?

Note: See TracTickets for help on using tickets.