CVE
- Id
- 154
- CVE No.
- CVE-1999-0154
- Status
- Candidate
- Description
- IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) to the end of the URL.
- Phase
- Proposed (20010912)
- Votes
- ACCEPT(4) Foat, Frech, Stracener, Wall | NOOP(3) Baker, Christey, Cole
- Comments
- Christey> This is the precursor to the problem that is identified in | CVE-1999-0253. | Christey> CIAC:H-48 | URL:http://ciac.llnl.gov/ciac/bulletins/h-48.shtml | CHANGE> [Foat changed vote from NOOP to ACCEPT]