Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2001-0276

Overview

Vulnerability Score 6.4 6.4
CVE Id CVE-2001-0276
Last Modified 05 Sep 2008 04:23:42
Published 03 May 2001 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2001-0276

Summary

ext.dll in BadBlue 1.02.07 Personal Edition web server allows remote attackers to determine the physical path of the server by directly calling ext.dll without any arguments, which produces an error message that contains the path.

Vulnerable Systems

Application

  • Working Resources Inc. Badblue 1.2.7


References

BID - 2390

BUGTRAQ - 20010217 BadBlue Web Server Ext.dll Vulnerabilities

CONFIRM - http://www.badblue.com/p010219.htm

XF - badblue-ext-reveal-path(6130)


Last Updated: 27 May 2016 10:36:12