First published: Thu Sep 23 1999(Updated: )
IIS FTP servers may allow a remote attacker to read or delete files on the server, even if they have "No Access" permissions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Commercial Internet System | =2.5 | |
Microsoft Internet Information Services | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0777 is considered a critical vulnerability due to its potential to allow unauthorized file access.
To fix CVE-1999-0777, update your IIS FTP server to the latest security patch released by Microsoft.
CVE-1999-0777 affects Microsoft Internet Information Server version 4.0 and Microsoft Commercial Internet System version 2.5.
Exploiting CVE-1999-0777 can allow remote attackers to read or delete files on the FTP server, bypassing access controls.
Mitigating CVE-1999-0777 involves applying security patches and implementing stricter file permissions on the FTP server.