ASP/ASA Source Using Microsoft Translate f: bug (IIS 5.1)
Medium Nessus Network Monitor Plugin ID 3212
SynopsisThe remote web server can disclose source code.
DescriptionThere is a serious vulnerability in IIS 5.1 that allows an attacker to view ASP/ASA source code instead of a processed file when the files are stored on a FAT partition. ASP source code can contain sensitive information such as usernames and passwords for ODBC connections.
SolutionInstall the remote web server on a NTFS partition.