Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Microsoft IIS 4.0 and before, when installed on a FAT partition, allows a remote attacker to obtain source code of ASP files via a URL encoded with Unicode.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft FAT文件系统 IIS Unicode .asp泄漏源码漏洞
Vulnerability Description
CVE(CAN) ID: CAN-2001-0709 IIS 在处理.asp请求时存在一个问题。正常情况下,当请求一个.asp文件时,IIS会确定 它是一个脚本,然后执行这个脚本。然而,如果目标主机使用的是FAT文件系统,那么当构 造一个特殊的web请求(.asp后缀使用unicode编码),IIS将不能正确处理请求,而是返回 asp文件的源代码。
CVSS Information
N/A
Vulnerability Type
N/A