Description
IIS 4.0 and 5.0 allows remote attackers to obtain fragments of source code by appending a +.htr to the URL, a variant of the "File Fragment Reading via .HTR" vulnerability.
Affected products
Exploits & proofs of concept
- exploit-dbMicrosoft IIS 4.0/5.0 - Source Fragment Disclosureby Zuo Lei
Updated 14m ago · 8 sources