First published: Fri May 07 1999(Updated: )
The showcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Internet Information Server | =4.0 | |
=4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0736 has been classified as a high severity vulnerability due to its potential for sensitive data exposure.
To mitigate CVE-1999-0736, ensure that the showcode.asp file is removed or adequately secured to prevent unauthorized access.
CVE-1999-0736 specifically affects Microsoft Internet Information Server version 4.0.
CVE-1999-0736 allows remote attackers to read arbitrary files on the server, leading to information disclosure.
Microsoft provided security bulletins at the time of the vulnerability's disclosure, and organizations should consult their patch management policies for updates.