Remote Code Disclosure Vulnerability in IIS 3.0 with iis-fix Hotfix

Remote Code Disclosure Vulnerability in IIS 3.0 with iis-fix Hotfix

CVE-1999-0253 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

IIS 3.0 with the iis-fix hotfix installed allows remote intruders to read source code for ASP programs by using a %2e instead of a . (dot) in the URL.

Learn more about our Web Application Penetration Testing UK.