Vulnerabilities > CVE-2000-1090 - Unspecified vulnerability in Microsoft Internet Information Server 4.0/5.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
microsoft

Summary

Microsoft IIS for Far East editions 4.0 and 5.0 allows remote attackers to read source code for parsed pages via a malformed URL that uses the lead-byte of a double-byte character.

Vulnerable Configurations

Part Description Count
Application
Microsoft
2