CVE

Id
154  
CVE No.
CVE-1999-0154  
Status
Candidate  
Description
IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) to the end of the URL.  
Phase
Proposed (20010912)  
Votes
ACCEPT(4) Foat, Frech, Stracener, Wall | NOOP(3) Baker, Christey, Cole  
Comments
Christey> This is the precursor to the problem that is identified in | CVE-1999-0253. | Christey> CIAC:H-48 | URL:http://ciac.llnl.gov/ciac/bulletins/h-48.shtml | CHANGE> [Foat changed vote from NOOP to ACCEPT]