eEye Digital Security SecureIIS...

- AV AC AU C I A
发布: 2001-05-18
修订: 2025-04-13

It has been reported that SecureIIS exhibits strange behaviour when it recieves large requests (composed of several thousand characters). One of the behaviours that has been reportedly observed is the disclosure of internal memory on error pages in response to excessive requests. The original report stated that in one instance, information about the configuration was disclosed to the attacker sending the request. This may assist attackers in further attacks against the server and network. Further information is forthcoming.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息