First published: Fri Jan 01 1999(Updated: )
IIS has the #exec function enabled for Server Side Include (SSI) files.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Internet Information Services (IIS) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0561 is considered a critical vulnerability due to the risk of remote code execution.
To fix CVE-1999-0561, disable the #exec function in Server Side Includes on IIS servers.
CVE-1999-0561 affects Microsoft Internet Information Services (IIS) with Server Side Include functionality.
The risks associated with CVE-1999-0561 include unauthorized access and execution of malicious commands on the server.
Although CVE-1999-0561 is an older vulnerability, it remains a concern for legacy systems still using vulnerable IIS versions.