PT-2001-1703 · Netcruiser · Netcruiser Web Server
Published
2001-05-24
·
Updated
2017-12-19
·
CVE-2001-0492
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Netcruiser Web server versions 0.1.2.8 and earlier
Description
The issue allows remote attackers to determine the physical path of the server via a URL containing specific keywords, including
con, com2, or com3.Recommendations
For Netcruiser Web server versions 0.1.2.8 and earlier, consider restricting access to URLs that contain the keywords
con, com2, or com3 until a patch is available.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Netcruiser Web Server