Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8wcg-8pwm-v3gc

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

IIS 4.0 and 5.0 does not properly restrict access to certain types of files when their parent folders have less restrictive permissions, which could allow remote attackers to bypass access restrictions to some files, aka the "File Permission Canonicalization" vulnerability.

IIS 4.0 and 5.0 does not properly restrict access to certain types of files when their parent folders have less restrictive permissions, which could allow remote attackers to bypass access restrictions to some files, aka the "File Permission Canonicalization" vulnerability.

EPSS

Процентиль: 81%
0.01619
Низкий

Связанные уязвимости

nvd
больше 25 лет назад

IIS 4.0 and 5.0 does not properly restrict access to certain types of files when their parent folders have less restrictive permissions, which could allow remote attackers to bypass access restrictions to some files, aka the "File Permission Canonicalization" vulnerability.

EPSS

Процентиль: 81%
0.01619
Низкий