CVE-2003-0456
VisNetic WebSite 3.5 allows remote attackers to obtain the full pathname of the server via a request containing a folder that does not exist, which leaks the pathname in an error message, as demonstrated using _vti_bin/fpcount.exe.
Scoring
- CVSS base score
- 0.04
- EPSS probability
- 0.92%
- Published
- 2003-07-15
- Last modified
- 2026-03-16
Affected products
- n/a n/a