Home » Articles, Microsoft
Exploiting Microsoft IIS with Metasploit / Best of Security
As of this afternoon, the msfencode command has the ability to emit ASP scripts that execute Metasploit payloads. This can be used to exploit the currently-unpatched file name parsing bug in Microsoft IIS. This flaw allows a user who …
Read this article:
Exploiting Microsoft IIS with Metasploit / Best of Security
Tags: asp, Microsoft, msfencode, parsing-bug, Patch Management, patching, the-msfencode

RSS FEEDS
Entries (RSS)
Leave a comment!