Sambar Server contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when an attacker accesses dumpenv.pl, which will disclose system environment information information resulting in a loss of confidentiality.
Currently, there are no known upgrades or patches to correct this issue. It is possible to correct the flaw by implementing the following workaround(s):
Remove dumpenv.pl from the /cgi-bin directory.