ext.dll in BadBlue 1.02.07 Personal Edition web server allows remote attackers to determine the physical path of the server by directly calling ext.dll without any arguments, which produces an error message that contains the path.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=98263019502565&w=2 | mailing list |
http://www.securityfocus.com/bid/2390 | patch vendor advisory vdb entry exploit |
http://www.badblue.com/p010219.htm | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/6130 | vdb entry |