CVE-1999-0253

Published: 1997-01-01

Description

IIS 3.0 with the iis-fix hotfix installed allows remote intruders to read source code for ASP programs by using a %2e instead of a . (dot) in the URL.

Severity

Overall Severity: N/A

CVSS Metrics

Type Score Severity Vector

Affected Products

microsoft - internet_information_server

Affected Versions:

microsoft - internet_information_services

Affected Versions:

microsoft - internet_information_services

Affected Versions:

References

Neural Processor Active