Microsoft IIS Various Domain User Account Access Vulnerability
BID:2719
Info
Microsoft IIS Various Domain User Account Access Vulnerability
| Bugtraq ID: | 2719 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 14 2001 12:00AM |
| Updated: | May 14 2001 12:00AM |
| Credit: | Posted in a Microsoft Security Bulletin MS01-026 on May 14, 2001. |
| Vulnerable: |
Microsoft IIS 5.0 Microsoft IIS 4.0 |
| Not Vulnerable: | |
Discussion
Microsoft IIS Various Domain User Account Access Vulnerability
Microsoft IIS contains a flaw in the handling of FTP domain authentication.
A user attempting to authenticate using a valid login name appended with specially chosen characters, will not be required to specify the domain which the account belongs. The FTP service will instead search the domain and all trusted domains for the user account. Once the account is located, the user will have to complete the authentication process. At this point brute force attacks can be used in an attempt to gain access to the domain.
Microsoft IIS contains a flaw in the handling of FTP domain authentication.
A user attempting to authenticate using a valid login name appended with specially chosen characters, will not be required to specify the domain which the account belongs. The FTP service will instead search the domain and all trusted domains for the user account. Once the account is located, the user will have to complete the authentication process. At this point brute force attacks can be used in an attempt to gain access to the domain.
Exploit / POC
Microsoft IIS Various Domain User Account Access Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Microsoft IIS Various Domain User Account Access Vulnerability
Solution:
Microsoft has released a patch which rectifies this issue:
Microsoft IIS 4.0
Microsoft IIS 5.0
Solution:
Microsoft has released a patch which rectifies this issue:
Microsoft IIS 4.0
-
Microsoft Q295534
http://download.microsoft.com/download/winntsp/Patch/q293826/NT4/EN-US /Q295534i.exe -
Microsoft Q295534
Install both IIS 4.0 patches.
http://download.microsoft.com/download/winntsp/Patch/q293826/NT4/EN-US /Q295534is.exe
Microsoft IIS 5.0
References
Microsoft IIS Various Domain User Account Access Vulnerability
References:
References:
- Microsoft Security Bulletin MS02-026 (Microsoft)