Korean
<< Back
VID 27063
Severity 40
Port 135
Protocol TCP
Class WMI
Detailed Description The sample application installed by default when IIS service is installed should be deleted for safe. This application may use for attacking and installing backdoor program.

* Platforms Affected:
Microsoft IIS Server
Recommendation ¡á IIS 5.0, 6.0
1. Check sample directory
c:\inetpub\iissamples
c:\winnt\help\iishelp (IIS manual)
c:\program files\common files\system\msadc\sample (data access)
%SystemRoot%\System32\Inetsrv\IISADMPWD

2. Delete sample directory after checking
¡Ø No need from IIS 7.0 version
Related URL (CVE)
Related URL (SecurityFocus)
Related URL (ISS)