CVE-2001-0795
HIGHPerception LiteServe 1.25 - Source Code Disclosure via MS-DOS File Naming Conventions
Title source: llmDescription
Perception LiteServe 1.25 allows remote attackers to obtain source code of CGI scripts via URLs that contain MS-DOS conventions such as (1) upper case letters or (2) 8.3 file names.
References (2)
Core 2
Core References
Broken Link, Patch, Vendor Advisory mailing-list
x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2001-06/0328.html
Broken Link, Exploit, Patch, Third Party Advisory, VDB Entry, Vendor Advisory vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/2926
Scores
CVSS v3
7.5
EPSS
0.0204
EPSS Percentile
78.5%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-178
Status
published
Products (1)
cmfperception/liteserve
1.25
Published
Oct 18, 2001
Tracked Since
Feb 18, 2026