CVE-1999-0407

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
09/02/1999
Last modified:
03/04/2025

Description

By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to identify valid users on the system.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*