[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*


CVE-2011-5279
CRLF injection vulnerability in the CGI implementation in Microsoft Internet Information Services (IIS) 4.x and 5.x on Windows NT and Windows 2000 allows remote attackers to modify arbitrary uppercase environment variables via a \n (newline) character in an HTTP header.

CVE-2009-4445
Microsoft Internet Information Services (IIS), when used in conjunction with unspecified third-party upload applications, allows remote attackers to create empty files with arbitrary extensions via a filename containing an initial extension followed by a : (colon) and a safe extension, as demonstrat ...

*CPE
cpe:/a:microsoft:iis:5.0
CCE    84
CCE-20007-1
CCE-19952-1
CCE-19994-3
CCE-19474-6
...
OVAL    20
oval:org.mitre.oval:def:731
oval:org.mitre.oval:def:435
oval:org.secpod.oval:def:2355
oval:org.mitre.oval:def:5389
...

© SecPod Technologies