Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4whv-v2mh-gv8p

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

IIS 4.0 allows local users to bypass the "User cannot change password" policy for Windows NT by directly calling .htr password changing programs in the /iisadmpwd directory, including (1) aexp2.htr, (2) aexp2b.htr, (3) aexp3.htr , or (4) aexp4.htr.

IIS 4.0 allows local users to bypass the "User cannot change password" policy for Windows NT by directly calling .htr password changing programs in the /iisadmpwd directory, including (1) aexp2.htr, (2) aexp2b.htr, (3) aexp3.htr , or (4) aexp4.htr.

EPSS

Процентиль: 96%
0.23698
Средний

Связанные уязвимости

nvd
больше 23 лет назад

IIS 4.0 allows local users to bypass the "User cannot change password" policy for Windows NT by directly calling .htr password changing programs in the /iisadmpwd directory, including (1) aexp2.htr, (2) aexp2b.htr, (3) aexp3.htr , or (4) aexp4.htr.

EPSS

Процентиль: 96%
0.23698
Средний