Total vulnerabilities in the database
IIS 4.0 allows remote attackers to obtain the internal IP address of the server via an HTTP 1.0 request for a web page which is protected by basic authentication and has no realm defined.
Software | From | Fixed in |
---|---|---|
microsoft / internet_information_services | 5.0 | 5.0.x |
microsoft / internet_information_server | 3.0 | 3.0.x |
microsoft / internet_information_server | 4.0 | 4.0.x |
microsoft / internet_information_services | 2.0 | 2.0.x |