Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-0704

Опубликовано: 15 фев. 2006
Источник: nvd
CVSS2: 2.6
EPSS Низкий

Описание

iE Integrator 4.4.220114, when configured without a "bespoke error page" in acm.ini, allows remote attackers to obtain sensitive information via a URL that calls a non-existent .aspx script in the integrator/apps directory, which results in an error message that displays the installation path, web server name, IP, and port, session cookie information, and the IIS system username.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ie:ie_integrator:4.4.220114:*:*:*:*:*:*:*

EPSS

Процентиль: 59%
0.00387
Низкий

2.6 Low

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

iE Integrator 4.4.220114, when configured without a "bespoke error page" in acm.ini, allows remote attackers to obtain sensitive information via a URL that calls a non-existent .aspx script in the integrator/apps directory, which results in an error message that displays the installation path, web server name, IP, and port, session cookie information, and the IIS system username.

EPSS

Процентиль: 59%
0.00387
Низкий

2.6 Low

CVSS2

Дефекты

NVD-CWE-Other