CVE-2000-0071
medium
📛 Threat Title
CVE-2000-0071
Description
IIS 4.0 allows a remote attacker to obtain the real pathname of the document root by requesting non-existent files with .ida or .idq extensions.
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (3)
- cve@mitre.org NVD Recent CVEs
- cve@mitre.org NVD Recent CVEs
-
NVD detail: CVE-2000-0071
NVD Recent CVEs
IIS 4.0 allows a remote attacker to obtain the real pathname of the document root by requesting non-existent files with .ida or .idq extensions.
Remediations (10)
-
web:github.com
Patch termsrv.dll so that multiple remote users can open an RDP session on a non-Windows Server computer - fabianosrc/TermsrvPatcher
-
web:heimdalsecurity.com
Explore six essential patch management best practices for 2026 to keep your systems secure, up to date, and protected from vulnerabilities.
-
web:petri.com
If a Group Policy setting is available to roll back a fix , it is included in the Windows Update KB article and release notes as a mitigation for a known issue.
-
web:portal.msrc.microsoft.com
The Security Update Guide provides information on the latest Microsoft security updates, helping users understand and address potential vulnerabilities effectively.
-
web:tuxcare.com
It includes discovering vulnerabilities, evaluating their potential impact, prioritizing remediation efforts (including patching), and confirming the fixes. Patch Management Patch management, on the other hand, is the act of applying the necessary updates to fix known vulnerabilities. It's a critical component of vulnerability management.
-
web:www.action1.com
Patch , manage and access up to 200 endpoints remotely FREE of any charges, forever, with a free patch management solution from Action1. No strings attached.
-
web:www.bitdefender.com
The GravityZone Patch Management module includes several features, such as on-demand or scheduled patch scanning, automatic or manual patching, and reporting on missing patches. Learn more about Bitdefender Patch Management supported vendors and products.
-
web:www.cve.org
At cve .org, we provide the authoritative reference method for publicly known information-security vulnerabilities and exposures
-
web:www.nist.gov
NIST maintains the National Vulnerability Database (NVD), a repository of information on software and hardware flaws that can compromise computer security. This is a key piece of the nation's cybersecurity infrastructure.
-
web:www.notebookcheck.net
Microsoft's February 2026 Windows 11 updates (KB5077181 and KB5075941) add security patches, bug fixes, and new Secure Boot rollout signals ahead of certificate expirations starting in June 2026.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.