cbcvebase.
CVE-2002-1180
published 2002-11-12

CVE-2002-1180: A typographical error in the script source access permissions for Internet Information Server (IIS) 5.0 does not properly exclude .COM files, which allows…

PriorityP428high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
7.99%
94.1th percentile
A typographical error in the script source access permissions for Internet Information Server (IIS) 5.0 does not properly exclude .COM files, which allows attackers with only write permissions to upload malicious .COM files, aka "Script Source Access Vulnerability."

Affected

1 ranges
VendorProductVersion rangeFixed in
microsoftinternet_information_services
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.