HTTP: Microsoft IIS Directory Security Bypass

This signature detects attempts to exploit a known vulnerability against Microsoft IIS. Attackers can bypass security restrictions on directories enabling them to view, edit, and download information.

Extended Description

Microsoft Internet Information Services (IIS) is prone to an authentication-bypass vulnerability because it fails to properly enforce access restrictions on certain requests to a site that requires authentication. An attacker can exploit this issue to gain unauthorized access to protected resources, which may lead to other attacks. This issue affects IIS 5.1; other 5.x versions may also be affected. Please note that this issue does not affect versions 6.x and 7.x.

References

BugTraq: 41314

CVE: CVE-2011-4963

Short Name
HTTP:IIS:DIR-BYPASS
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Bypass CVE-2010-2731 CVE-2011-4963 Directory IIS Microsoft Security bid:41314
Release Date
09/14/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3339
False Positive
Unknown
CVSS Score

6.8

5.0

Found a potential security threat?