info
discussion
exploit
solution
references
Microsoft IIS 4.0/5.0 Escaped Characters Vulnerability
Solution:
Microsoft has released patches which rectify this issue:
Microsoft IIS 4.0 alpha
Microsoft Q254142
http://download.microsoft.com/download/iis40/Patch/4.2.740.1/NT4ALPHA/ EN-US/escseq4a.exe
Microsoft IIS 4.0
Microsoft Q254142
http://download.microsoft.com/download/iis40/Patch/4.2.740.1/NT4ALPHA/ EN-US/escseq4i.exe
Microsoft IIS 5.0
Microsoft Q254142
http://download.microsoft.com/download/win2000platform/Patch/Q254142/N T5/EN-US/Q254142_W2K_SP1_x86_en.EXE
Privacy Statement
Copyright 2010, SecurityFocus