[Exploit] [Remote] [Local] [Web Apps] [Dos/Poc] [Shellcode] [RSS]
# Title : Microsoft Internet Information Services 5 Authentication Bypass Vulnerability
# Published : 2010-07-02
# Author : Soroush Dalili
# Previous Title : HP OpenView NNM getnnmdata.exe CGI Invalid MaxAge Remote Code Execution
# Next Title : UFO: Alien Invasion v2.2.1 Remote Code Execution (OSX)
Description:
This vulnerability is because of using Alternate Data Stream to open a protected folder. All of IIS
authentication methods can be circumvented. In this technique, we can add a ¡°:$i30:$INDEX_ALLOCATION¡± to a directory name to bypass the authentication.
Download:
http://www.exploit-db.com/sploits/IIS5.1_Authentication_Bypass.pdf