← العودة للجدول
CVE-2009-1535
CVE-2009-1535 — The WebDAV extension in Microsoft Internet Information Services (IIS) 5.1 and 6.
📅 2009-06-10
🔴 Critical 🔥 Yes NVD Exploit Microsoft 🎯 EPSS 91.83%

📋 الوصف الكامل

The WebDAV extension in Microsoft Internet Information Services (IIS) 5.1 and 6.0 allows remote attackers to bypass URI-based protection mechanisms, and list folders or read, create, or modify files, via a %c0%af (Unicode / character) at an arbitrary position in the URI, as demonstrated by inserting %c0%af into a "/protected/" initial pathname component to bypass the password protection

💻 الأنظمة المتأثرة

The WebDAV extension

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2009-1535

📡 المصدر

NVD

✅ الحلول والتخفيف

Microsoft Patch Tuesday

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←