积极预防 及时发现
快速响应 力保恢复
Small HTTP Server 2.01 不能正确的处理包含空值的SSI标签,这将有可能导致本地...
发布时间:2001-01-09 信息来源:管理员

CNCVE编号:CNCVE-20000898 CVE编号:CAN-2000-0898 安全级别:中 漏洞中文描述: Small HTTP Server 2.01 不能正确的处理包含空值的SSI标签,这将有可能导致本地用户或远程攻击者通过将SSI插入到HTML文件中来使服务器崩溃。 漏洞英文描述: Small HTTP Server 2.01 does not properly process Server Side Includes (SSI) tags that contain null values, which allows local users, and possibly remote attackers, to cause the server to crash by inserting the SSI into an HTML file. 漏洞参考: BUGTRAQ:20001114 Vulnerabilites in SmallHTTP Server | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=97421834001092&w=2 系统类型: Unix/Linux Win95/98/ME 漏洞类型:异常处理错误