[Exploit]  [Remote]  [Local]  [Web Apps]  [Dos/Poc]  [Shellcode]  [RSS]

# Title : Microsoft Internet Information Services 5 Authentication Bypass Vulnerability
# Published : 2010-07-02
# Author : Soroush Dalili
# Previous Title : HP OpenView NNM getnnmdata.exe CGI Invalid MaxAge Remote Code Execution
# Next Title : UFO: Alien Invasion v2.2.1 Remote Code Execution (OSX)


Description:
This vulnerability is because of using Alternate Data Stream to open a protected folder. All of IIS
authentication methods can be circumvented. In this technique, we can add a ¡°:$i30:$INDEX_ALLOCATION¡± to a directory name to bypass the authentication.

Download:
http://www.exploit-db.com/sploits/IIS5.1_Authentication_Bypass.pdf