On Tue, Nov 24, 2009 at 11:51 AM, Steven Backus <backus@xxxxxxxxxxxxxxxxxxx> wrote: > Our crack security team scanned my web server with QualysGuard > Enterprise. It found a "Gneric Web Server Directory Traversal > Vulnerability." I'm at a loss to fix this, httpd -v returns: > > Server version: Apache/2.2.3 > Server built: Nov 10 2009 09:06:57 > > I'm on RHEL 5 with current patches. Can anyone point me in the > direction of a fix? > > Thanks, > Steve > -- > Steven J. Backus Computer Specialist > University of Utah E-Mail: steven.backus@xxxxxxxx > Genetic Epidemiology Alternate: backus@xxxxxxxxxxxxx > 391 Chipeta Way -- Suite D Office: 801.587.9308 > Salt Lake City, UT 84108-1266 http://www.math.utah.edu/~backus > > --------------------------------------------------------------------- > The official User-To-User support forum of the Apache HTTP Server Project. > See <URL:http://httpd.apache.org/userslist.html> for more info. > To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx > " from the digest: users-digest-unsubscribe@xxxxxxxxxxxxxxxx > For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx > > http://tinyurl.com/ylzn5g8 third link from the top bro --------------------------------------------------------------------- The official User-To-User support forum of the Apache HTTP Server Project. See <URL:http://httpd.apache.org/userslist.html> for more info. To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx " from the digest: users-digest-unsubscribe@xxxxxxxxxxxxxxxx For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx