A misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote attackers to list directories in the web root via a Web Distributed Authoring and Versioning (WebDAV) search.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/1756 | exploit vdb entry patch vendor advisory |
http://www.microsoft.com/technet/support/kb.asp?ID=272079 | vendor advisory |
http://www.atstake.com/research/advisories/2000/a100400-1.txt | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/5335 | vdb entry |