CVE-2001-0986
N/A
N/A
Summary
SQLQHit.asp sample file in Microsoft Index Server 2.0 allows remote attackers to obtain sensitive information such as the physical path, file attributes, or portions of source code by directly calling sqlqhit.asp with a CiScope parameter set to (1) webinfo, (2) extended_fileinfo, (3) extended_webinfo, or (4) fileinfo.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.securityfocus.com/bid/3339
- http://www.securityfocus.com/archive/1/214217
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7125
References
- http://www.securityfocus.com/bid/3339
- http://www.securityfocus.com/archive/1/214217
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7125
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.