ext.dll in BadBlue 1.02.07 Personal Edition web server allows remote attackers to determine the physical path of the server by directly calling ext.dll without any arguments, which produces an error message that contains the path.
References
Link | Resource |
---|---|
http://marc.info/?l=bugtraq&m=98263019502565&w=2 | |
http://www.badblue.com/p010219.htm | |
http://www.securityfocus.com/bid/2390 | Exploit Patch Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/6130 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2002-03-09T05:00:00
Updated: 2002-02-26T10:00:00
Reserved: 2001-04-04T00:00:00
Link: CVE-2001-0276
JSON object: View
NVD Information
Status : Modified
Published: 2001-05-03T04:00:00.000
Modified: 2017-10-10T01:29:40.187
Link: CVE-2001-0276
JSON object: View
Redhat Information
No data.
CWE