Comments on: Microsoft warns of new server vulnerability
Software maker says an unpatched flaw in its Web-serving software could offer a hole for malicious code to attack systems.
Software maker says an unpatched flaw in its Web-serving software could offer a hole for malicious code to attack systems.
Web sites launch all the time, but they also shut their doors. We highlight 15 that bit the dust this year.
Let the debate begin: Was the iPhone more important than iTunes? Was anything bigger than Google finding a great business model? CNET offers its list of the 10 most important stories of the '00s.
During her years at CNET News, Ina Fried has changed beats several times, changed genders once, and covered both of the Pirates of Silicon Valley. These days, most of her attention is focused on Microsoft.
Beyond Binary is a look at how technology is changing our lives and the people behind all that life-changing stuff, with an extra emphasis on that which emanates from Redmond, Wash.
Add this feed to your online news reader
On the other hand, I would think/hope that this vulnerability would not impact most IIS configurations. Generally, it's probably good form to keep file system ACLs enforced and limit the IIS anonymous user account to read-only access on the IIS folder structure. Are there any major web applications that live on IIS that require this (and I'm asking because I'm not sure)? Additionally, there are probably a lot of IIS servers out there that don't even have WebDAV turned on. Also, it looks like IIS7 (Server 2008/Vista) isn't affected.
- by ExWinUser May 19, 2009 7:14 AM PDT
- Now my Microsoft Certifications are worthless again!
- Like this Reply to this comment
-
(12 Comments)