PoC Index

CVE-2010-2731

MEDIUM 6.8EPSS 31.1%

Unspecified vulnerability in Microsoft Internet Information Services (IIS) 5.1 on Windows XP SP3, when directory-based Basic Authentication is enabled, allows remote attackers to bypass intended access restrictions and execute ASP files via a crafted request, aka "Directory Authentication Bypass Vulnerability."

CVSS v2.0
6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS
31.12% chance of exploitation in the next 30 days, 98th percentile
Published
2010-09-15
Updated
2024-08-07

Metasploit modules (1)

ExploitDB entries (1)

References

Related