CNCVE编号:CNCVE-20010853 CVE编号:CAN-2001-0853 安全级别:中 漏洞中文描述: Entrust GetAccess中的目录遍历漏洞允许远程攻击者在help.gas.bat或AboutBx.gas.bat的本地参数中使用“..”命令来阅读任意文件。 漏洞英文描述: Directory traversal vulnerability in Entrust GetAccess allows remote attackers to read arbitrary files via a .. (dot dot) in the locale parameter to (1) helpwin.gas.bat or (2) AboutBox.gas.bat. 漏洞参考: Reference: BUGTRAQ:20011105 New getAccess