积极预防 及时发现
快速响应 力保恢复
IIS 4.0和5.0在虚拟目录映射到UNC共享时不能完全执行ISAPI扩展处理,这允许远程攻击者可...
发布时间:2002-05-20 信息来源:管理员

CNCVE编号:CNCVE-20000246 CVE编号:CVE-2000-0246 安全级别:中 漏洞中文描述: IIS 4.0和5.0在虚拟目录映射到UNC共享时不能完全执行ISAPI扩展处理,这允许远程攻击者可以读取ASP和其它文件的源代码,这就是"Virtualized UNC Share"漏洞。 漏洞英文描述: IIS 4.0 and 5.0 does not properly perform ISAPI extension processing if a virtual directory is mapped to a UNC share, which allows remote attackers to read the source code of ASP and other files, aka the "Virtualized UNC Share" vulnerability. 漏洞参考: 系统类型:其他 漏洞类型:其他