CVE-2001-0986
35Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 48%
from disclosure to weapon0 days
Published on NVDFeb 2
1st PoCSep 14
exploitation probability
48%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
SQLQHit.asp sample file in Microsoft Index Server 2.0 allows remote attackers to obtain sensitive information such as the physical path, file attributes, or portions of source code by directly calling sqlqhit.asp with a CiScope parameter set to (1) webinfo, (2) extended_fileinfo, (3) extended_webinfo, or (4) fileinfo.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/21113⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.