directory traversal and cmd.exe

Robin Wood <[email protected]>
Newsgroups gmane.comp.security.web-applications
Message-ID <[email protected]>
Can anyone tell me which version of IIS fixed this style of vulnerability?

http://server.com/scripts/..%5c../Windows/System32/cmd.exe?/c+dir+c:\

A few people have been talking about it recently but I've never come
across it in tests despite hitting some quite old servers. From what I
can find reading round it was IIS 4 and 5 but I'm guessing would have
been patched well before 6 came out.

Robin



This list is sponsored by Cenzic
--------------------------------------
Let Us Hack You. Before Hackers Do!
It's Finally Here - The Cenzic Website HealthCheck. FREE.
Request Yours Now! 
http://www.cenzic.com/2009HClaunch_Securityfocus
--------------------------------------
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.