Re: IIS still vulnerable

From: Paul Lynch (paul.lynch_at_nospam.com)
Date: 12/29/03


Date: Mon, 29 Dec 2003 17:40:18 +0000

On Mon, 29 Dec 2003 08:26:53 -0800, "Johnny"
<anonymous@discussions.microsoft.com> wrote:

>IIS with all the lastest updates/patches and some kid
>executes code on the machine, uploads an FTP daemon then
>and uploads 10gb of movies & games - he usually puts
>everything into iissamples. - its all in German!!!
>

You have probably left anonymous FTP access enabled with write
permissions to your system.

You can have the best security systems in the world but if you leave
the front door wide open......

Start here :

http://securityadmin.info/faq.asp#ftpfolder

Regards,

Paul Lynch
MCSE