CNCVE编号:CNCVE-20001118 CVE编号:CAN-2000-1118 安全级别:中 漏洞中文描述: 24Link 1.06 网络服务器允许远程攻击者通过把诸如“/+/”或“/.”等字符串预先挂到HTTP GET 请求上来绕过访问限制。 漏洞英文描述: 24Link 1.06 web server allows remote attackers to bypass access restrictions by prepending strings such as "/+/" or "/." to the HTTP GET request. 漏洞参考: BUGTRAQ:20001127 24Link Webserver | URL:http://archives.neohapsis.com/archives/bugtraq/2000-11/0369.html 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:权限有效性检查错误