6
CVSSv2

CVE-2009-4444

Published: 29/12/2009 Updated: 23/11/2020
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

Microsoft Internet Information Services (IIS) 5.x and 6.x uses only the portion of a filename before a ; (semicolon) character to determine the file extension, which allows remote malicious users to bypass intended extension restrictions of third-party upload applications via a filename with a (1) .asp, (2) .cer, or (3) .asa first extension, followed by a semicolon and a safe extension, as demonstrated by the use of asp.dll to handle a .asp;.jpg file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet information services 5.0

microsoft internet information services 6.0

Exploits

Rapid7 Security Advisory - FCKEditor contains a file renaming bug that allows remote code execution Specifically, it is possible to upload ASP code via the ASPNET connector in FCKEditor The vulnerability requires that the remote server be running IIS This vulnerability has been confirmed on FCKEditor 251 and 266 ...