7.5

CVE-2001-0795

Exploit
Perception LiteServe 1.25 allows remote attackers to obtain source code of CGI scripts via URLs that contain MS-DOS conventions such as (1) upper case letters or (2) 8.3 file names.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CmfperceptionLiteserve Version1.25
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.04% 0.786
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE-178 Improper Handling of Case Sensitivity

The product does not properly account for differences in case sensitivity when accessing or determining the properties of a resource, leading to inconsistent results.

http://archives.neohapsis.com/archives/bugtraq/2001-06/0328.html
Patch
Vendor Advisory
Broken Link
http://www.securityfocus.com/bid/2926
Patch
Third Party Advisory
Vendor Advisory
Exploit
Broken Link
VDB Entry