CNCVE编号:CNCVE-20000951 CVE编号:CVE-2000-0951 安全级别:中 漏洞中文描述: 错误配置启用Index Server并设置了索引属性的IIS5.0中的,使远程攻击者可以通过Web Distributed Authoring and Versioning (WebDAV)查询来获得网络根目录下的文件列表。 漏洞英文描述: A misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote attackers to list directories in the web root via a Web Distributed Authoring and Versioning (WebDAV) search. 漏洞参考: ATSTAKE:A100400-1 | URL:http://www.atstake.com/research/advisories/2000/a100400-1.txt | MSKB:Q272079 | URL:http://www.microsoft.com/technet/support/kb.asp?ID=272079 | BID:1756 | URL:http://www.securityfocus.com/bid/1756 | XF:iis-in 系统类型: Win2000/NT 漏洞类型:输入有效性检查错误