Description
The shtml.exe program in the FrontPage extensions package of IIS 4.0 and 5.0 allows remote attackers to determine the physical path of HTML, HTM, ASP, and SHTML files by requesting a file that does not exist, which generates an error message that reveals the path.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-08T05:14:21.497Z
Reserved: 2000-06-14T00:00:00.000Z
Link: CVE-2000-0413
No data.
Status : Modified
Published: 2000-05-06T04:00:00.000
Modified: 2026-04-16T00:27:16.627
Link: CVE-2000-0413
No data.
OpenCVE Enrichment
No data.
Weaknesses