SecurityTubeBeta
Watch ... Learn ... Contribute
securitytube home
programming videos
tools videos
basics videos
fun
divider
upload video on SecurityTube

IIS WebDav Vulnerability in Action

 
 

Nikolaos Rangos recently discovered the "Microsoft IIS 6.0 WebDAV Remote Authentication Bypass"vulnerability. According to him this vulnerability allows remote attackers to bypass access restrictions on vulnerable installations of Internet Information Server 6.0. The specific flaw exists within the WebDAV functionality of IIS 6.0. The Web Server fails to properly handle unicode tokens when parsing the URI and sending back data. Exploitation of this issue can result in the following: Authentication bypass of password protected folders - Listing, downloading and uploading of files into a password protected WebDAV folder. You can get more information about the vulnerability here. Here is a video demo of the vulnerability exploitation in action.



 

We hate these ADs as much as you do! Help us stay FREE and CLEAN by making a Generous Donation!

 
Related Videos from: Latest Attacks and Exploits (2)
divider
You are Viewing this Video Now!
1818 views
5270 views
2036 views
1522 views
1565 views

Author
miliw0rm

Milw0rm hosts one of the best Exploit databases on the web. The Exploits are separated by exploit type (local, remote, DoS, etc.). 

 
©2007 Freak Labs