Page 19 of 92 results (0.005 seconds)

CVSS: 7.5EPSS: 1%CPEs: 3EXPL: 0

IIS 3.0 with the iis-fix hotfix installed allows remote intruders to read source code for ASP programs by using a %2e instead of a . (dot) in the URL. • http://www.securityfocus.com/bid/1814 •

CVSS: 10.0EPSS: 16%CPEs: 1EXPL: 1

IIS 1.0 allows users to execute arbitrary commands using .bat or .cmd files. • https://www.exploit-db.com/exploits/20445 http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ148188 http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ155056 •