Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v54v-27r8-vpr7

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

VisNetic WebSite 3.5 allows remote attackers to obtain the full pathname of the server via a request containing a folder that does not exist, which leaks the pathname in an error message, as demonstrated using _vti_bin/fpcount.exe.

VisNetic WebSite 3.5 allows remote attackers to obtain the full pathname of the server via a request containing a folder that does not exist, which leaks the pathname in an error message, as demonstrated using _vti_bin/fpcount.exe.

EPSS

Процентиль: 75%
0.00923
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
около 22 лет назад

VisNetic WebSite 3.5 allows remote attackers to obtain the full pathname of the server via a request containing a folder that does not exist, which leaks the pathname in an error message, as demonstrated using _vti_bin/fpcount.exe.

EPSS

Процентиль: 75%
0.00923
Низкий

Дефекты

CWE-200