CNCVE编号:CNCVE-20000906 CVE编号:CAN-2000-0906 安全级别:中 漏洞中文描述: Moreover.com cached_feed.cgi script2000年6月发布的第4版中的目录遍历漏洞允许远程攻击者通过在“category”或“format”参数中使用“..”攻击来阅读任意文件。 漏洞英文描述: Directory traversal vulnerability in Moreover.com cached_feed.cgi script version 4.July.00 allows remote attackers to read arbitrary files via a .. (dot dot) attack on the category or format parameters. 漏洞参考: BUGTRAQ:20001002 Moreover Cached_Feed CGI Vulnerability | URL:http://archives.neohapsis.com/archives/bugtraq/2000-10/0013.html | XF:moreover-cgi-dir-traverse | URL:http://xforce.iss.net/static/5334.php | BID:1762 | URL:http://www.secur 系统类型:其他 漏洞类型:输入有效性检查错误