漏洞信息详情
Extropia WebBanner输入验证漏洞
- CNNVD编号:CNNVD-200002-022
- 危害等级: 中危
- CVE编号:
CVE-2000-0469
- 漏洞类型:
输入验证
- 发布时间:
2000-02-02
- 威胁类型:
远程
- 更新时间:
2005-07-27
- 厂 商:
selena_sol - 漏洞来源:
First posted to Bu… -
漏洞简介
Selena Sol WebBanner 4.0版本存在漏洞。远程攻击者借助..(点 点)攻击可以读取任意文件。
漏洞公告
The following is taken directly from the BugTraq post regarding this issue, it is a solution provided by the author of the post:
Solution:
~~~~~~~~~~
A snippet of script index.cgi at line 195 without comments:
>—[ line 195 + ]————————————————-
open (HTML_FILE, “$html_file”) ||
&CgiDie (” blablabla… “);
while (
{
if (/\
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END