CNCVE编号:CNCVE-20010778 CVE编号:CAN-2001-0778 安全级别:中 漏洞中文描述: OmniHTTPd 2.0.8及其早期版本允许远程攻击者通过一个带有用于空格(%20)URL加密符号的GET请求来获得源代码。 漏洞英文描述: OmniHTTPd 2.0.8 and earlier allow remote attackers to obtain source code via a GET request with the URL-encoded symbol for a space (%20). 漏洞参考: Reference: BUGTRAQ:20010525 Remote vulnerabilities in OmniHTTPd Reference: URL:http://archives.neohapsis.com/archives/bugtraq/2001-05/0248.html Reference: XF:omnihttpd-reveal-source-code(6621) Reference: URL:http://xforce.iss.net/static/6621.php 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:设计错误