CVE-2000-0951: Medium severity Microsoft Internet Information Services vulnerability
Published Dec 19, 2000
·Updated
A misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote attackers to list directories in the web root via a Web Distributed Authoring and Versioning (WebDAV) search.
Affected Software
1 affected component
Microsoft Internet Information Services=5.0
Remediation
Patch Available
Event History
Dec 19, 2000
CVE Published
05:00 AM
Jan 22, 2001
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0951?
CVE-2000-0951 has been classified as a moderate severity vulnerability.
2
How do I fix CVE-2000-0951?
To mitigate CVE-2000-0951, disable the Index Server feature and ensure that WebDAV settings are properly configured.
3
What systems are affected by CVE-2000-0951?
CVE-2000-0951 specifically affects Microsoft Internet Information Services version 5.0.
4
What type of attack does CVE-2000-0951 involve?
CVE-2000-0951 allows remote attackers to list directories on the web server through a WebDAV search.
5
Is CVE-2000-0951 related to directory traversal vulnerabilities?
Yes, CVE-2000-0951 is related to directory listing issues that can expose sensitive information.