CNCVE编号:CNCVE-20000979 CVE编号:CVE-2000-0979 安全级别:中 漏洞中文描述: Windows 95, Windows 98, 与 Windows Me 中的文件与打印共享服务不能正确检查一个文件共享的口令,这使得远程攻击者可以通过发送匹配真实口令第一个字符的1字节口令来绕过文件共享访问控制。 漏洞英文描述: File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password that matches the first character of the real password. 漏洞参考: BUGTRAQ:20001012 NSFOCUS SA2000-05: Microsoft Windows 9x NETBIOS password | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=97147777618139&w=2 | MS:MS00-072 | URL:http://www.microsoft.com/technet/security/bulletin/MS00-072.asp | BID:1780 | 系统类型: Unix/Linux Win95/98/ME 漏洞类型:权限有效性检查错误