Vulnerability Details CVE-1999-0407
By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to identify valid users on the system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.296
EPSS Ranking 96.4%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-1999-0407
-
cpe:2.3:a:microsoft:internet_information_server:4.0