积极预防 及时发现
快速响应 力保恢复
Ezboard 2000是一个基于web的BBS。通过在Content-Type头文件中输入畸形的用...
发布时间:2002-03-14 信息来源:管理员

CNCVE编号:CNCVE-20020066 CVE编号: 安全级别:高 漏洞中文描述: Ezboard 2000是一个基于web的BBS。通过在Content-Type头文件中输入畸形的用户输入内容,可以引起缓冲区溢出。这一漏洞允许攻击者以WEB服务器权限执行远程任意代码。 漏洞英文描述: EasyBoard 2000 is a web board CGI. Malformed user-supplied input to the Content-Type header can create a buffer overflow condition. This vulnerability allows arbitrary remote code execution with the privileges of the web server. 漏洞参考: http://archives.neohapsis.com/archives/bugtraq/2002-02/0106.html http://ezne.net/ 系统类型:其他 漏洞类型:缓冲区溢出