Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IIS 5.0 and 4.0 allows remote attackers to read the source code for executable web server programs by appending "%3F+.htr" to the requested URL, which causes the files to be parsed by the .HTR ISAPI extension, aka a variant of the "File Fragment Reading via .HTR" vulnerability.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft IIS文件片段泄漏漏洞
Vulnerability Description
IIS 5.0和4.0版本存在漏洞。远程攻击者可以通过在URL请求后添加"%3F+.htr"读取可执行web服务器程序源代码,导致文件通过.HTR ISAPI扩展名被解析,也称为"File Fragment Reading via .HTR"漏洞变种。
CVSS Information
N/A
Vulnerability Type
N/A