Bugtraq mailing list archives
Third Party Software Affected by IIS "Escape Character Parsing" V ulnerability
From: secure () MICROSOFT COM (Microsoft Product Security Response Team)
Date: Tue, 28 Dec 1999 10:27:05 -0800
Hi All - A recent posting to BugTraq asked why we didn't identify specific third-party software products that are affected by the "Escape Character Parsing" vulnerability (http://www.microsoft.com/Security/Bulletins/ms99-061.asp). Although we do try to provide as much information regarding security vulnerabilities as possible, we simply can't provide information like this without the consent of the third-party vendors. Even if we could provide a list of third-party products that are known to be affected by the vulnerability, it would become obsolete almost immediately as new versions of the products are released. The safest course of action is to apply the patch if you are running any third-party software atop IIS. This will ensure that your system is protected, regardless of the third-party software you're using now or in the future. Regards, Secure () microsoft com
Current thread:
- Local / Remote Remote DoS Attack in Rover POP3 Server V1.1 NT From aVirt Ussr Labs (Dec 27)
- Remote DoS/Access Attack in Internet Anywhere Mail Server(POP 3) v2.3.1 Steven Alexander (Dec 27)
- Trend Micro InterScan VirusWall SMTP bug asl () USA ALCATEL COM (Dec 27)
- L0pht Advisory: initscripts-4.48-1 RedHat Linux 6.1 Mudge (Dec 27)
- UnixWare local pis exploit Brock Tellier (Dec 27)
- Third Party Software Affected by IIS "Escape Character Parsing" V ulnerability Microsoft Product Security Response Team (Dec 28)
- majordomo local exploit Brock Tellier (Dec 28)
- $cf Security flaw Shevek (Dec 02)
- Re: majordomo local exploit Christopher Schulte (Dec 28)
- Re: majordomo local exploit Todd C. Miller (Dec 28)
- AltaVista rudi carell (Dec 29)
- Re: majordomo local exploit Taneli Huuskonen (Dec 29)
- Re: majordomo local exploit Coolio (Dec 29)
- Re: majordomo local exploit Henrik Edlund (Dec 29)
- bna,sh Loneguard (Dec 30)
- Re: majordomo local exploit Andrew Brown (Dec 30)