|
|
Microsoft IIS Cross Site Scripting .shtml Vulnerability
|
Bugtraq ID:
|
1595
|
|
Class:
|
Origin Validation Error
|
|
CVE:
|
CAN-2000-0746
|
|
Remote:
|
Yes
|
|
Local:
|
Yes
|
|
Published:
|
Aug 21 2000 12:00AM
|
|
Updated:
|
Aug 21 2000 12:00AM
|
|
Credit:
|
Posted to Bugtraq on Aug 21, 2000 by Georgi Guninski <joro@nat.bg>.
|
|
Vulnerable:
|
Microsoft IIS 5.0
-
Microsoft Windows 2000 Advanced Server SP2
-
Microsoft Windows 2000 Advanced Server SP2
-
Microsoft Windows 2000 Advanced Server SP1
-
Microsoft Windows 2000 Advanced Server SP1
+
Microsoft Windows 2000 Advanced Server
+
Microsoft Windows 2000 Advanced Server
-
Microsoft Windows 2000 Datacenter Server SP2
-
Microsoft Windows 2000 Datacenter Server SP2
-
Microsoft Windows 2000 Datacenter Server SP1
-
Microsoft Windows 2000 Datacenter Server SP1
-
Microsoft Windows 2000 Professional SP2
-
Microsoft Windows 2000 Professional SP2
-
Microsoft Windows 2000 Professional SP1
-
Microsoft Windows 2000 Professional SP1
+
Microsoft Windows 2000 Professional
+
Microsoft Windows 2000 Professional
-
Microsoft Windows 2000 Server SP2
-
Microsoft Windows 2000 Server SP2
-
Microsoft Windows 2000 Server SP1
-
Microsoft Windows 2000 Server SP1
+
Microsoft Windows 2000 Server
+
Microsoft Windows 2000 Server
Microsoft IIS 4.0 alpha
-
Microsoft Windows NT 4.0 alpha
-
Microsoft Windows NT 4.0 alpha
Microsoft IIS 4.0
+
Cisco Building Broadband Service Manager 5.0
+
Cisco Building Broadband Service Manager 5.0
+
Cisco Call Manager 3.0
+
Cisco Call Manager 3.0
+
Cisco Call Manager 2.0
+
Cisco Call Manager 2.0
+
Cisco Call Manager 1.0
+
Cisco Call Manager 1.0
+
Cisco ICS 7750
+
Cisco ICS 7750
+
Cisco IP/VC 3540 Video Rate Matching Module
+
Cisco IP/VC 3540 Video Rate Matching Module
+
Cisco Unity Server 2.4
+
Cisco Unity Server 2.4
+
Cisco Unity Server 2.3
+
Cisco Unity Server 2.3
+
Cisco Unity Server 2.2
+
Cisco Unity Server 2.2
+
Cisco Unity Server 2.0
+
Cisco Unity Server 2.0
+
Cisco uOne 4.0
+
Cisco uOne 4.0
+
Cisco uOne 3.0
+
Cisco uOne 3.0
+
Cisco uOne 2.0
+
Cisco uOne 2.0
+
Cisco uOne 1.0
+
Cisco uOne 1.0
+
Microsoft BackOffice 4.5
+
Microsoft BackOffice 4.5
+
Microsoft BackOffice 4.0
+
Microsoft BackOffice 4.0
+
Microsoft Windows NT 4.0 Option Pack
+
Microsoft Windows NT 4.0 Option Pack
|
|
|
|
Not Vulnerable:
|
|
|

|