7.5
CVSSv2

CVE-2001-0523

Published: 14/08/2001 Updated: 19/12/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

eEye SecureIIS versions 1.0.3 and previous versions allows a remote malicious user to bypass filtering of requests made to SecureIIS by escaping HTML characters within the request, which could allow a remote malicious user to use restricted variables and perform directory traversal attacks on vulnerable programs that would otherwise be protected.

Vulnerable Product Search on Vulmon Subscribe to Product

eeye digital security secureiis 1.0.2

eeye digital security securells