Handling new vulnerabilities like WebDav

<[email protected]> Thu, 20 Mar 2003 10:49:26 -0500
Newsgroups gmane.comp.security.incident-handling
Message-ID <[email protected]>
I am curious as to how people in large organizations are handling new vulne=
rabilities like the WebDAV recently released.  Specifically, I'm trying to =
gauge how people are determining their exposure, or risk level.  Upon learn=
ing of a new vulnerability are folks scanning their entire environment to l=
ook for the vulnerability?  Or are folks going through their inventory to l=
ook for IIS web servers and having folks manually check them? =20

Just looking for input.  Please reply directly to me and I will sum up and =
post.

Thanks,

Bob


**********************************************************************
This transmission may contain information that is privileged, confidential =
and/or exempt from disclosure under applicable law. If you are not the inte=
nded recipient, you are hereby notified that any disclosure, copying, distr=
ibution, or use of the information contained herein (including any reliance=
 thereon) is STRICTLY PROHIBITED. If you received this transmission in erro=
r, please immediately contact the sender and destroy the material in its en=
tirety, whether in electronic or hard copy format. Thank you
**********************************************************************