Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

HTTP:EXPLOIT:FP2K-ASP-UPLOAD

Severity

High

Recommended

No

Recommended Action

Drop

Category

HTTP

Keywords

Microsoft FrontPage 2000 ASP File Upload Vulnerability

Release Date

2011/11/16

Update Number

2031

Supported Platforms

idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

HTTP: Microsoft FrontPage 2000 ASP File Upload Vulnerability


This signature detects attempts to exploit a known flaw in FrontPage 2000. Unauthenticated attackers can upload server-side ASP scripts, resulting in arbitrary code execution on the server.

Extended Description

A file upload vulnerability allegedly affects the DATA Access Internet Publishing Service Provider Distributed Versioning and Authoring (DAV) functionality of Microsoft FrontPage 2000. An attacker may leverage this issue to upload arbitrary files to the affected computer. This will allow the execution of server-based script code, and will facilitate a compromise of the affected server. Depending on the purpose on the server, an attacker could also exploit the issue to place malicious or abuse content on the server. It should be noted that the individual reporting this issue may have discovered it while auditing a poorly configured implementation of the affected software; if this were the case this issue may not be a vulnerability. This BID will be updated immediately upon the release of new information.

Affected Products

  • Microsoft FrontPage 2000

References

  • BugTraq: 12141

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out