OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Gu1tarb0yaol.com
Date: Fri Jun 22 2001 - 11:03:45 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    In a message dated Fri, 22 Jun 2001 11:54:18 AM Eastern Daylight Time, "James McFarlen"<mcfarlejri.disa.mil> writes:

    Question: We monitor some systems owned by others that were loaded with IIS 3.0(one system now uses Oracle Web software). The owners of these systems have made no
    move or mention to upgrade IIS version.
    Are these machines and other machines loaded with older versions of IIS (server versions 2.0, 3.0) also vulnerable to the attacks as described in the various patches for IIS 4.0 and 5.0?

    How about workstations loaded with IIS personal version 4.0?

    Jim McFarlen

    >>