2.6
CVSSv2

CVE-2006-0704

Published: 15/02/2006 Updated: 20/07/2017
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
VMScore: 231
Vector: AV:N/AC:H/Au:N/C:P/I:N/A:N

Vulnerability Summary

iE Integrator 4.4.220114, when configured without a "bespoke error page" in acm.ini, allows remote malicious users to obtain sensitive information via a URL that calls a non-existent .aspx script in the integrator/apps directory, which results in an error message that displays the installation path, web server name, IP, and port, session cookie information, and the IIS system username.

Vulnerable Product Search on Vulmon Subscribe to Product

ie ie integrator 4.4.220114