Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-4301

Опубликовано: 29 сент. 2008
Источник: nvd
CVSS2: 10
EPSS Средний

Описание

A certain ActiveX control in iisext.dll in Microsoft Internet Information Services (IIS) allows remote attackers to set a password via a string argument to the SetPassword method. NOTE: this issue could not be reproduced by a reliable third party. In addition, the original researcher is unreliable. Therefore the original disclosure is probably erroneous

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:microsoft:internet_information_services:-:*:*:*:*:*:*:*

EPSS

Процентиль: 96%
0.26363
Средний

10 Critical

CVSS2

Дефекты

NVD-CWE-noinfo

Связанные уязвимости

github
почти 4 года назад

** DISPUTED ** A certain ActiveX control in iisext.dll in Microsoft Internet Information Services (IIS) allows remote attackers to set a password via a string argument to the SetPassword method. NOTE: this issue could not be reproduced by a reliable third party. In addition, the original researcher is unreliable. Therefore the original disclosure is probably erroneous.

EPSS

Процентиль: 96%
0.26363
Средний

10 Critical

CVSS2

Дефекты

NVD-CWE-noinfo