When IIS is run with a default language of Chinese, Korean, or Japanese, it allows a remote attacker to view the source code of certain files, a.k.a. "Double Byte Code Page".
Weaknesses in this category are typically introduced during the configuration of the software.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/477 | vdb entry third party advisory |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-022 | vendor advisory |
http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ233335 | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/2302 | vdb entry third party advisory |