Description
MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing them to execute commands remotely.
Exploits
203051999-01-30remoteWindows
Microsoft Site Server 2.0 with IIS 4.0 - Arbitrary File Upload
By Mnemonix
References
cve@mitre.org
http://marc.info/?l=bugtraq&m=91763097004101&w=2af854a3a-2127-422b-91ae-364da2661108
http://marc.info/?l=bugtraq&m=91763097004101&w=2