CNCVE编号:CNCVE-20010760 CVE编号:CAN-2001-0760 安全级别:中 漏洞中文描述: Citrix Nfuse 1.51允许远程攻击者通过一个不能提供会话域的畸形请求来获得web root的绝对路径。 漏洞英文描述: Citrix Nfuse 1.51 allows remote attackers to obtain the absolute path of the web root via a malformed request that does not provide the session field. 漏洞参考: Reference: BUGTRAQ:20010630 Nfuse reveals full path Reference: URL:http://www.securityfocus.com/archive/1/194449 Reference: BUGTRAQ:20010702 Re: Nfuse reveals full path Reference: URL:http://www.securityfocus.com/archive/1/194522 Reference: BID:2956 系统类型: Win2000/NT 漏洞类型:异常处理错误