Description
In IIS, an attacker could determine a real path using a request for a non-existent URL that would be interpreted by Perl (perl.exe).
Affected products
Exploits & proofs of concept
- exploit-dbMicrosoft IIS 5.0 - IISAPI Extension Enumerate Root Web Server Directoryby Mnemonix
References
Updated 38m ago · 8 sources