Vulnerability Description
A configuration problem in the Ad Server Sample directory (AdSamples) in Microsoft Site Server 3.0 allows an attacker to obtain the SITE.CSC file, which exposes sensitive SQL database information.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Site Server | 3.0 |
References
- http://marc.info/?l=bugtraq&m=92647407227303&w=2
- http://www.securityfocus.com/bid/256ExploitPatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/2270
- http://marc.info/?l=bugtraq&m=92647407227303&w=2
- http://www.securityfocus.com/bid/256ExploitPatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/2270
FAQ
What is CVE-1999-1520?
CVE-1999-1520 is a vulnerability with a CVSS score of 5.0 (MEDIUM). A configuration problem in the Ad Server Sample directory (AdSamples) in Microsoft Site Server 3.0 allows an attacker to obtain the SITE.CSC file, which exposes sensitive SQL database information.
How severe is CVE-1999-1520?
CVE-1999-1520 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-1520?
Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Site Server.