Microsoft ISA服务器集成可扩展,多层企业级防火墙,可扩展高性能WEB缓冲服务程序。 Microsoft ISA在错误页面在处理客户端消息时缺少充分过滤,远程攻击者可以利用这个漏洞进行跨站脚本执行攻击,可能窃取用户用于验证的敏感COOKIE信息。 ISA服务器遇到HTTP错误代码如"404 Not Found"或者"500 Internal Server Error",ISA服务器就会返回HTML形式的错误处理信息,这些HTML文件使用脚本输出链接作为SERVER。TLD的部分URL。通过构建特
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2001-1410 | Microsoft Internet Explorer安全漏洞 | |
| CVE-2003-0142 | Adobe Acrobat Reader (acroread)不可信插件运行漏洞 | |
| CVE-2003-0352 | Microsoft Windows DCOM RPC接口长主机名远程缓冲区溢出漏洞(MS03-026) | |
| CVE-2003-0458 | HP NonStop SeeView Server Gateway权限提升漏洞 | |
| CVE-2003-0577 | mpg123不正确计算帧大小内存破坏漏洞 | |
| CVE-2003-0578 | IBM U2 UniVerse特权提升漏洞 | |
| CVE-2003-0579 | IBM U2 UniVerse获取特权漏洞 | |
| CVE-2003-0580 | IBM U2 UniVerse任意代码执行漏洞 |
No comments yet