CNCVE编号:CNCVE-20001177 CVE编号:CAN-2000-1177 安全级别:低 漏洞中文描述: Big Brother (BB) 1.5d3早期版本中的 bb-hist.sh, bb-histlog.sh, bb-hostsvc.sh, bb-rep.sh, bb-replog.sh, 以及 bb-ack.sh 允许远程攻击者通过把目标文件列入HISTFILE参数中来确定文件是否存在和用户ID. 漏洞英文描述: bb-hist.sh, bb-histlog.sh, bb-hostsvc.sh, bb-rep.sh, bb-replog.sh, and bb-ack.sh in Big Brother (BB) before 1.5d3 allows remote attackers to determine the existence of files and user ID's by specifying the target file in the HISTFILE parameter. 漏洞参考: BUGTRAQ:20001121 Big Brother Advisory - Fate Research Labs | URL:http://archives.neohapsis.com/archives/bugtraq/2000-11/0284.html | CONFIRM:http://bb4.com/incident.nov21 | BID:1971 | URL:http://www.securityfocus.com/bid/1971 系统类型:其他 漏洞类型:输入有效性检查错误