ext.dll in BadBlue 1.02.07 Personal Edition web server allows remote attackers to determine the physical path of the server by directly calling ext.dll without any arguments, which produces an error message that contains the path.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/2390 | Exploit Patch Vendor Advisory |
http://www.badblue.com/p010219.htm | |
http://marc.info/?l=bugtraq&m=98263019502565&w=2 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/6130 |
Configurations
Information
Published : 2001-05-02 21:00
Updated : 2017-10-09 18:29
NVD link : CVE-2001-0276
Mitre link : CVE-2001-0276
JSON object : View
CWE
Products Affected
working_resources_inc.
- badblue