IIS 5.0 uses relative paths to find system files that will run in-process, which allows local users to gain privileges via a Trojan horse file, aka the "System file listing privilege elevation" vulnerability.
References
Configurations
Information
Published : 2001-09-19 21:00
Updated : 2018-10-30 09:25
NVD link : CVE-2001-0507
Mitre link : CVE-2001-0507
JSON object : View
CWE
Products Affected
microsoft
- internet_information_services