Unrated severityNVD Advisory· Published Sep 14, 2001· Updated Apr 16, 2026
CVE-2001-0986
CVE-2001-0986
Description
SQLQHit.asp sample file in Microsoft Index Server 2.0 allows remote attackers to obtain sensitive information such as the physical path, file attributes, or portions of source code by directly calling sqlqhit.asp with a CiScope parameter set to (1) webinfo, (2) extended_fileinfo, (3) extended_webinfo, or (4) fileinfo.
Affected products
1- cpe:2.3:a:microsoft:index_server:2.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.securityfocus.com/archive/1/214217nvdPatchVendor Advisory
- www.securityfocus.com/bid/3339nvdExploitVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/7125nvd
News mentions
0No linked articles in our index yet.