Vulnerability Details CVE-1999-0407
By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to identify valid users on the system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.051
EPSS Ranking 91.5%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-1999-0407
-
cpe:2.3:a:microsoft:internet_information_server:4.0