Preface: IIS data service queryLogo -Internet Security Systems

IIS data service query

advICE :Intrusions : 2002560
 FAQ
Oh my gosh, I'm being HACKED!!!
How do I report the hacker to my ISP?
I'm seeing lots of attacks, is this normal?

Summary

A remote SQL query has been made using the IIS remote data service (RDS). This query may access privileged information.

Details

Every default installation of Microsoft IIS 4.0 can be exploited by this bug.

Defense

Consult the Microsoft Advisory below in order to configure your system correctly. The default Microsoft web server as configured comes with a number of vulnerabilities that can be exploited. After installation, the Microsoft guidelines must be carefully followed in order to ensure that a system cannot be compromised.

 more information
Microsoft Advisory  
 
BugtraqID: 529   NT IIS MDAC RDS Vulnerability
 
NTBugTraq discussion  
 
CVE-1999-1011   Microsoft IIS RDS/MDAC
 
CIAC: J-054  
 
MS Bulletin: MS98-004  
 
MS Bulletin: MS99-025  
 

 parametric information
URLThe suspicious URL.
accessedIndicates whether the URL was successfully accessed.
codeThe HTTP return code.
argThe argument to the GET command (if any).

 
Version appeared: 1.8.5.5 

Privacy Policy |  Copyright Info