HTTP: IIS 4.0 Internal IP Disclosure
This signature detects attempts to exploit a known flaw in Microsoft Internet Information Server 4.0. A successful attack would reveal the internal IP address of an IIS host behind a firewall/NAT. This signature will not trigger on non-vulnerable servers.
Extended Description
IIS 4.0 allows remote attackers to obtain the internal IP address of the server via an HTTP 1.0 request for a web page which is protected by basic authentication and has no realm defined.
Affected Products
Microsoft internet_information_services
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Microsoft
2.6