漏洞信息详情
Xcache路径泄露漏洞
漏洞简介
Xcache 2.1版本存在漏洞。远程攻击者通过不在缓存Xcache里的URL请求确定Web服务器文件的绝对路径。该漏洞在Content-PageName头返回完整路径名称。
漏洞公告
Xcache Technologies has produced a patch to address this issue, however, it is not available for public download. Users of Xcache can obtain the patch by contacting [email protected].
参考网址
来源: XF 名称: xcache-path-disclosure(7159) 链接:http://xforce.iss.net/static/7159.php 来源: BID 名称: 3352 链接:http://www.securityfocus.com/bid/3352 来源: BUGTRAQ 名称: 20010921 IRM Security Advisory: Xcache Path Disclosure Vulnerability 链接:http://archives.neohapsis.com/archives/bugtraq/2001-09/0182.html
受影响实体
- Xcache_technologies Xcache:2.0<!--2000-1-1-->
- Xcache_technologies Xcache:2.1<!--2000-1-1-->
补丁
暂无
还没有评论,来说两句吧...