[原文]SGI MachineInfo CGI program, installed by default on some web servers, prints potentially sensitive system status information, which could be used by remote attackers for information gathering activities.
IRIX MachineInfo CGI Program Information Disclosure
Remote / Network Access
Loss of Confidentiality
SGI IRIX contains a flaw that may lead to an unauthorized information disclosure. The issue is due to the 'MachineInfo' CGI script, which will disclose sensitive system information resulting in a loss of confidentiality.
Currently, there are no known workarounds or upgrades to correct this issue. However, SGI has released a patch to address this vulnerability.