IIS 4.0 and 5.0 allows remote attackers to read documents outside of the web root, and possibly execute arbitrary commands, via malformed URLs that contain UNICODE encoded characters, aka the "Web Server Folder Traversal" vulnerability.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2000-12-18 21:00
Updated : 2018-10-30 09:25
NVD link : CVE-2000-0884
Mitre link : CVE-2000-0884
JSON object : View
CWE
Products Affected
microsoft
- internet_information_services
- internet_information_server