CVE-2001-0276: Medium severity Working Resources Inc. BadBlue vulnerability
ext.dll in BadBlue 1.02.07 Personal Edition web server allows remote attackers to determine the physical path of the server by directly calling ext.dll without any arguments, which produces an error message that contains the path.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2001-0276?
CVE-2001-0276 has a medium severity rating due to its potential for exposing the server's physical path.
How do I fix CVE-2001-0276?
To fix CVE-2001-0276, upgrade BadBlue to a version that does not include the ext.dll vulnerability.
What type of attack does CVE-2001-0276 facilitate?
CVE-2001-0276 facilitates path disclosure attacks, allowing attackers to gain sensitive information about the server.
Which version of BadBlue is affected by CVE-2001-0276?
CVE-2001-0276 specifically affects BadBlue version 1.2.7.
How does CVE-2001-0276 expose server information?
CVE-2001-0276 exposes server information by allowing attackers to trigger error messages from ext.dll that disclose the server's physical path.