积极预防 及时发现
快速响应 力保恢复
Pi3Web 1.0.1 网络服务器中的tstisapi.dll中允许远程攻击者通过一个请求不存在文...
发布时间:2001-05-03 信息来源:管理员

CNCVE编号:CNCVE-20010303 CVE编号:CAN-2001-0303 安全级别:中 漏洞中文描述: Pi3Web 1.0.1 网络服务器中的tstisapi.dll中允许远程攻击者通过一个请求不存在文件的URL来确定服务器的物理路径。 漏洞英文描述: tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to determine the physical path of the server via a URL that requests a non-existent file. 漏洞参考: BUGTRAQ:20010215 Vulnerabilities in Pi3Web Server | URL:http://archives.neohapsis.com/archives/bugtraq/2001-02/0316.html | BID:2381 | URL:http://www.securityfocus.com/bid/2381 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:异常处理错误