Re: Can't get rid of localstart.asp

From: Jeff Cochran (jeff.nospam_at_zina.com)
Date: 06/11/05

  • Next message: David Wang [Msft]: "Re: Logging into website - remove log in box"
    Date: Sat, 11 Jun 2005 14:00:22 GMT
    
    

    On Fri, 10 Jun 2005 14:37:02 -0700, SteveC
    <SteveC@discussions.microsoft.com> wrote:

    >I have deleted the localstart.asp file from my web server because of the
    >vulnerablity associated with a brute force attack on localstart.asp. This
    >server is my OWA server. Everything works fine but, my vulnerability scans
    >continue to show the localstart.asp vulnerability. When I go to
    >https://webservername/localstart.asp, I am prompted for a username and
    >password which is the reason I am being flagged by my scanner. I have checked
    >everywhere on the server and the localstart.asp file is no where on it. Why
    >would I be prompted for authentication when the file does not exist? More
    >importantly, how do I stop it?

    The authentication may be unrelated to the actual file requested.
    Have you tried requesting another file which also doesn't exist?

    FWIW, you can eliminate any vulnerability by saving a file as
    localstart.asp which does nothing but display a text message that the
    file does not exist.

    Jeff


  • Next message: David Wang [Msft]: "Re: Logging into website - remove log in box"

    Relevant Pages

    • SecurityFocus Microsoft Newsletter #142
      ... MICROSOFT VULNERABILITY SUMMARY ... Mollensoft Enceladus Server Suite Clear Text Password Storage... ... FakeBO Syslog Format String Vulnerability ... Methodus 3 Web Server File Disclosure Vulnerability ...
      (Focus-Microsoft)
    • SecurityFocus Microsoft Newsletter #139
      ... OFF any Windows 2000 Managed Dedicated Hosting Solution from Interland. ... Sun ONE Application Server Plaintext Password Vulnerability ... Batalla Naval Remote Buffer Overflow Vulnerability ...
      (Focus-Microsoft)
    • SecurityFocus Microsoft Newsletter #140
      ... Cafelog b2 Remote File Include Vulnerability ... Webfroot Shoutbox Remote Command Execution Vulnerability ... Pablo Software Solutions Baby POP3 Server Multiple Connection... ... Microsoft Windows XP Nested Directory Denial of Service... ...
      (Focus-Microsoft)
    • SecurityFocus Microsoft Newsletter # 150
      ... - automatically set positive security policies for real-time protection, ... MICROSOFT VULNERABILITY SUMMARY ... Meteor FTP Server USER Memory Corruption Vulnerability ... MDaemon SMTP Server Null Password Authentication Vulnerabili... ...
      (Focus-Microsoft)
    • SecurityFocus Microsoft Newsletter #152
      ... MICROSOFT VULNERABILITY SUMMARY ... Real Networks Helix Universal Server Remote Buffer Overflow ... ... NEW PRODUCTS FOR MICROSOFT PLATFORMS ...
      (Focus-Microsoft)