Semicolon Bug Reveals IIS Vulnerability
|
Article Published
December 28, 2009
A zero-day vulnerability in IIS revealed on Christmas day allows attackers to bypass file extension protections using a semicolon after an executable extension.
Tags:
security, Microsoft, vulnerability, IIS
