CNCVE编号:CNCVE-20010466 CVE编号:CAN-2001-0466 安全级别:中 漏洞中文描述: ustorekeeper 1.61 中的目录遍历漏洞允许远程攻击者通过在文件参数中的“..”来阅读任意文件。 漏洞英文描述: Directory traversal vulnerability in ustorekeeper 1.61 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter. 漏洞参考: BUGTRAQ:20010403 new advisory URL:http://marc.theaimsgroup.com/?l=bugtraq&m=98633176230748&w=2 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:输入有效性检查错误