← Back

CVE-2001-0947

nvd nist
Published: Dec 4, 2001Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Forms.exe CGI program in ValiCert Enterprise Validation Authority (EVA) 3.3 through 4.2.1 allows remote attackers to determine the real pathname of the server by requesting an invalid extension, which produces an error page that includes the path.

Affected (11)

1 product
Enterprise Validation Authority
Configuration A
11 vulnerable

References (8)

Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Vendor AdvisoryURL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor AdvisoryURL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.