|
Penetration Testing
mailing list archives
VBScript Runtime Error'800a0006'
From: whitehat <whitehaat () gmail com>
Date: Fri, 29 Feb 2008 11:54:32 +0530
Hi List,
I'm doing Web Application PT for a website which is using IIS-4.0.
I tried giving some bigger number in the parameters of the URL, which
lead to the following error because of exceeding the upper limit of that
particular Datatype:
Microsoft VBScript runtime error '800a0006'
Overflow:'CLng'
/....... .asp, line29
In almost all the URLs I found this issue.
I'm preparing a report advisory for this.
So I'd like to know what are the security issues related to this error.
How an attacker could be able to exploit this flaw.
Thanks in advance
Cheers,
--WHITEHAT
------------------------------------------------------------------------
This list is sponsored by: Cenzic
Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!
http://www.cenzic.com/downloads
------------------------------------------------------------------------
By Date
By Thread
Current thread:
- VBScript Runtime Error'800a0006' whitehat (Mar 03)
|