| VID |
22102 |
| Severity |
40 |
| Port |
80, ... |
| Protocol |
TCP |
| Class |
WWW |
| Detailed Description |
The IIS server appears to have the .IDA (indexing service) ISAPI filter mapped. At least one remote vulnerability has been discovered for the .IDA (indexing service) filter. This is detailed in Microsoft Advisory MS01-033, and gives remote SYSTEM level access to the web server.
* References: http://www.microsoft.com/technet/security/bulletin/ms01-033.asp |
| Recommendation |
It is recommended that even if you have patched this vulnerability that you unmap the .IDA extension, and any other unused ISAPI extensions if they are not required for the operation of your site.
To unmap the .IDA extension: 1. Open Internet Services Manager. 2. Right-click the Web server, and choose Properties from the context menu. 3. Master Properties 4. Select WWW Service | Edit | HomeDirectory | Configuration and remove the reference to .ida from the list. |
| Related URL |
CVE-2001-0500 (CVE) |
| Related URL |
(SecurityFocus) |
| Related URL |
(ISS) |
|