Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2000-0649

EPSS 62.99% · P98
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2000-0649

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
IIS 4.0 allows remote attackers to obtain the internal IP address of the server via an HTTP 1.0 request for a web page which is protected by basic authentication and has no realm defined.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Microsoft Internet Information Services 信息泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Microsoft Internet Information Services(IIS)是美国微软(Microsoft)公司的一款适用于Windows Server平台的Web服务器。 Microsoft Internet Information Services 4.0版本存在信息泄露漏洞。远程攻击者可以借助被基本认证保护并且无区域定义的网页的HTTP 1.0请求来获得服务器的内部IP地址。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2000-0649

#POC DescriptionSource LinkShenlong Link
1Test for CVE-2000-0649, and return an IP address if vulnerablehttps://github.com/rafaelh/CVE-2000-0649POC Details
2Script fo testing CVE-2000-0649 for Apache and MS IIS servershttps://github.com/stevenvegar/cve-2000-0649POC Details
3A small tool to create a PoC for CVE-2000-0649.https://github.com/Downgraderz/PoC-CVE-2000-0649POC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2000-0649

登录查看更多情报信息。

Same Patch Batch · n/a · 2000-08-03 · 15 CVEs total

CVE-2000-0623O'Reilly WebSite GET缓冲区溢出漏洞
CVE-2000-0625NetZero ZeroPort 3.0版本弱加密术方式漏洞
CVE-2000-0626CSM Alibaba Web服务器DoS漏洞
CVE-2000-0629Sun Java Web服务器漏洞
CVE-2000-0645WFTPD 2.4.1RC11多个漏洞
CVE-2000-0646WFTPD 2.4.1RC11多个漏洞
CVE-2000-0647WFTPD 2.4.1RC11多个漏洞
CVE-2000-0648WFTPD RNTO服务拒绝漏洞
CVE-2000-0653Microsoft Outlook Express的持续邮件浏览器的链接漏洞
CVE-2000-0656AnalogX Proxy DoS漏洞
CVE-2000-0657AnalogX Proxy DoS漏洞
CVE-2000-0658AnalogX Proxy DoS漏洞
CVE-2000-0659AnalogX Proxy DoS漏洞
CVE-2000-0667Linux gpm文件删除漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2000-0649

No comments yet


Leave a comment