I. 背景
"IIS is a web server application and set of
feature extension modules created by Microsoft for use with Microsoft Windows.
IIS is the third most popular server in the world." (Wikipedia)
II. 概述
Vulnerability Research Team discovered a vulnerability
in Microsoft IIS.
The vulnerability is caused by a tilde character "~" in a Get request, which could allow remote attackers
to diclose File and Folder names.
III. 影响产品
IIS 1.0, Windows NT 3.51
IIS 2.0, Windows NT 4.0
IIS 3.0, Windows NT 4.0 Service Pack 2
IIS 4.0, Windows NT 4.0 Option Pack
IIS 5.0, Windows 2000
IIS 5.1, Windows XP Professional and Windows XP Media Center Edition
IIS 6.0, Windows Server 2003 and Windows XP Professional x64 Edition
IIS 7.0, Windows Server 2008 and Windows Vista
IIS 7.5, Windows 7 (error remotely enabled or no web.config)
IIS 7.5, Windows 2008 (classic pipeline mode)
Note: Does not work when IIS uses .Net Framework 4.
IV. Binary Analysis & Exploits/PoCs
Tilde character "~" can be used to find short names of files and folders when the website is running on IIS.
The attacker can find important file and folders that they are not normaly visible.
In-depth technical *** ysis of the vulnerability and a functional exploit
are available through:
V. 解决方案
There are still workarounds through Vendor and security vendors.
Using a configured WAF may be usefull (discarding web requests including the tilde "~" character).
搜索360手机安全,进入该网站注册账号后。共设置了手机的定位软件商店搜索列表GPS或罗盘,定位这些小工具都是免费的,那就是广告。 不收费的定位软件找人,定位跟踪免费软件 最好的微信,免费 有上没有免费...
本文导读目录: 1、足球贴布内胆好不好? 2、足球内胆漏气如何修补??(说买的请绕道) 3、足球内胆的作用 4、这种足球是贴皮的好还是线缝的好? 5、手工足球内胆用的什么胶水粘的...
一.概念描述 现代数学:如果一个整数的约数(因数)是质数,就称这个约数(因数)为该数的一个质因数。把一个合数表示成质因数的乘积形式,叫作分解质因数。作为特例,把一个质数写成质因数乘积形式就...
30年前,一直在外面飘泊打工赚钱的张展老先生,忽然要想改变现状的生活状态,不经意中触碰到干花批发做生意,发觉这是一个简易易入门的,市场前景好挣钱快乃至,乃至是能够 发家致富的一个小投资项目。因...