Re: directory traversal and cmd.exe

Robin Wood <[email protected]>
Newsgroups gmane.comp.security.web-applications
Message-ID <[email protected]>
On 10 May 2011 23:29, Robin Wood <[email protected]> wrote:
> Can anyone tell me which version of IIS fixed this style of vulnerability?
>
> http://server.com/scripts/..%5c../Windows/System32/cmd.exe?/c+dir+c:\
>
> A few people have been talking about it recently but I've never come
> across it in tests despite hitting some quite old servers. From what I
> can find reading round it was IIS 4 and 5 but I'm guessing would have
> been patched well before 6 came out.
>
> Robin
>

Typical, asked the question then found the answer:

http://www.microsoft.com/technet/security/bulletin/ms00-078.mspx

No wonder I've not seen it in the wild.

Robin



This list is sponsored by Cenzic
--------------------------------------
Let Us Hack You. Before Hackers Do!
It's Finally Here - The Cenzic Website HealthCheck. FREE.
Request Yours Now! 
http://www.cenzic.com/2009HClaunch_Securityfocus
--------------------------------------
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.