CVE-1999-1451
CVSS 2.0 Score 5.0 of 10 (medium)
Details
Summary
CVE-1999-1451 is a vulnerability affecting IIS 4.0 and Site Server 3.0. This issue permits remote attackers to read arbitrary files through the Winmsdp.exe sample file. An attacker can exploit this vulnerability by sending a specially crafted request to the affected system, which may result in unauthorized access to sensitive data. This issue poses a significant risk to systems that have not been patched, as it can lead to data theft or other malicious activities. It is highly recommended that affected organizations apply the available patches to mitigate this threat.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft IIS
Affected Vendors
- Microsoft