CVE-2013-0337
The default configuration of nginx, possibly 1.3.13 and earlier, uses world-readable permissions for the (1) access.log
The default configuration of nginx, possibly 1.3.13 and earlier, uses world-readable permissions for the (1) access.log and (2) error.log files, which allows local users to obtain sensitive information by reading the files.
HIGH · CVSS 7.5
EPSS 0.00638
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules1
YARA rules0