|
|||||||||||
|
Re: IIS and leech
From: Ken Schaefer <ken(at)adOpenStatic.com>
Date: Sun Nov 10 2002 - 19:45:04 EST
From: "randall perry" <randallp@domain-logic.com> Subject: IIS and leech : An IIS box I manage freaked out yesterday. I initially thought that it
: If that wouldn't have happened, I probably would not have found the
Lots of ways to get into a box. Ever heard of "Code Red" and "Nimda"? (just for example). Both give the remote user command line access. Depending on what user context you are running the WWW access under, a remote attacker could possibly share a folder and copy some files to the server. Drop a setup script into a "startup" folder, and viola.
Cheers
This list is provided by the SecurityFocus ARIS analyzer service. For more information on this free incident handling, management and tracking system please see: http://aris.securityfocus.com Received on Mon Nov 11 20:54:21 2002 This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:01:50 EDT |
||||||||||
|
|||||||||||