Vulnerability   
Search   
    Search 219043 CVE descriptions
and 99761 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:10363
Category:CGI abuses
Title:ASP source using %2e trick
Summary:NOSUMMARY
Description:Description:

It is possible to get the source code of the remote
ASP scripts by appending %2e at the end
of the request (like GET /default.asp%2e)


ASP source codes usually contain sensitive informations such
as logins and passwords.

Solution : install all the latest Microsoft Security Patches

Risk factor : High

Cross-Ref: BugTraq ID: 1814
Common Vulnerability Exposure (CVE) ID: CVE-1999-0253
L0pht Security Advisory: 19970319
XForce ISS Database: http-iis-2e
CopyrightThis script is Copyright (C) 2000 Renaud Deraison

This is only one of 99761 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2024 E-Soft Inc. All rights reserved.