Nginx Permissions Privileges and Access Controls Vulnerability - CVE-2013-0337 - Vulnerability Database

Nginx Permissions Privileges and Access Controls Vulnerability - CVE-2013-0337

High
Reference: CVE-2013-0337
Title: Nginx Permissions Privileges and Access Controls Vulnerability
Overview:

The default configuration of nginx possibly 1.3.13 and earlier uses world-readable permissions for the (1) access.log and (2) error.log files which allows local users to obtain sensitive information by reading the files.