积极预防 及时发现
快速响应 力保恢复
Microsoft IIS 4.0及其 早期版本当安装在FAT分区上的时候,允许远程攻击者通过用Un...
发布时间:2001-09-20 信息来源:管理员

CNCVE编号:CNCVE-20010709 CVE编号:CAN-2001-0709 安全级别:高 漏洞中文描述: Microsoft IIS 4.0及其 早期版本当安装在FAT分区上的时候,允许远程攻击者通过用Unicode编码的URL获得ASP文件的源代码。 漏洞英文描述: Microsoft IIS 4.0 and before, when installed on a FAT partition, allows a remote attacker to obtain source code of ASP files via a URL encoded with Unicode. 漏洞参考: Reference: BUGTRAQ:20010622 ASP source code retrieved with Unicode extens ion Reference: URL: Reference: BID:2909 Reference: URL: Reference: 系统类型: Win2000/NT 漏洞类型:环境错误