6.4
CVSSv2

CVE-1999-0191

Published: 01/09/1997 Updated: 09/09/2008
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

IIS newdsn.exe CGI script allows remote users to overwrite files.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet information server 3.0

Exploits

source: wwwsecurityfocuscom/bid/1818/info Microsoft IIS 30 came with a sample program, newdsnexe, installed by default in the directory wwwroot/scripts/tools/ Execution of this program with a properly submitted URL could allow for remote file creation The file created is a Microsoft Access Database, but can have any extension, includi ...