5
CVSSv2

CVE-2003-0456

Published: 18/08/2003 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

VisNetic WebSite 3.5 allows remote malicious users to obtain the full pathname of the server via a request containing a folder that does not exist, which leaks the pathname in an error message, as demonstrated using _vti_bin/fpcount.exe.

Vulnerable Product Search on Vulmon Subscribe to Product

deerfield visnetic website 3.5.13

deerfield visnetic website 3.5.15

deerfield visnetic website 3.5.17