Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Microsoft Index Server allows remote attackers to view the source code of ASP files by appending a %20 to the filename in the CiWebHitsFile argument to the null.htw URL.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft Windows Index Server '%20'远程ASP源码泄露漏洞(MS00-006)
Vulnerability Description
Microsoft Index Server是Windows NT 4.0可选安装包中包括的一个基于Web的搜索引擎,在Windows 2000系统中作为一个服务安装。 Index Server的Webhits.dll实现上存在漏洞,远程攻击可能利用此漏洞读取系统上ASP脚本的源码或其它系统文件的内容。Cerberus安全小组现在微软的Index Server服务上发现了第三个漏洞。对于运行在IIS4或IIS5上的Index Server,即使您把最近的补丁给打上了或者没有.htw文件,都同样受到此漏洞的
CVSS Information
N/A
Vulnerability Type
N/A