Vulnerabilities > Microsoft > Internet Information Server > Medium

DATE CVE VULNERABILITY TITLE RISK
1999-05-07 CVE-1999-0738 Unspecified vulnerability in Microsoft Internet Information Server 4.0
The code.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.
network
low complexity
microsoft
5.0
1999-05-07 CVE-1999-0737 Unspecified vulnerability in Microsoft Internet Information Server 4.0
The viewcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.
network
low complexity
microsoft
5.0
1999-05-07 CVE-1999-0736 Unspecified vulnerability in Microsoft Internet Information Server 4.0
The showcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files.
network
low complexity
microsoft
5.0
1999-02-11 CVE-1999-1375 Unspecified vulnerability in Microsoft Internet Information Server 3.0/4.0
FileSystemObject (FSO) in the showfile.asp Active Server Page (ASP) allows remote attackers to read arbitrary files by specifying the name in the file parameter.
network
low complexity
microsoft
5.0
1999-01-24 CVE-1999-1544 Unspecified vulnerability in Microsoft Internet Information Server 3.0/4.0
Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (ls) command.
network
low complexity
microsoft
5.0
1999-01-01 CVE-1999-0448 Unspecified vulnerability in Microsoft Internet Information Server 4.0
IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request.
network
low complexity
microsoft
5.0
1998-06-26 CVE-1999-0007 USE of A Broken OR Risky Cryptographic Algorithm vulnerability in multiple products
Information from SSL-encrypted sessions via PKCS #1.
network
low complexity
c2net hp microsoft netscape ssleay CWE-327
5.0
1998-06-01 CVE-1999-0278 Unspecified vulnerability in Microsoft Internet Information Server and Windows NT
In IIS, remote attackers can obtain source code for ASP files by appending "::$DATA" to the URL.
network
low complexity
microsoft
5.0
1998-02-06 CVE-1999-0012 Some web servers under Microsoft Windows allow remote attackers to bypass access restrictions for files with long file names.
network
low complexity
netscape microsoft
5.0
1997-09-01 CVE-1999-0191 Unspecified vulnerability in Microsoft Internet Information Server 3.0
IIS newdsn.exe CGI script allows remote users to overwrite files.
network
low complexity
microsoft
6.4