Security

From: michael (noemail@bleh.com)
Date: 07/10/02


From: "michael" <noemail@bleh.com>
Date: Wed, 10 Jul 2002 13:21:48 -0700


first off, it's never a good idea to use real names in a
public forum, especially when the forum is about security
issues =)

use NTFS permissions to restrict access to that directory.
if there are other tools that require public or general
access, then move the file to a separete directory and
lock it down, allowing only those that need access to that
file.

i suggest checking out the IIS lockdown tool and URLScan
tool, both available from MS.

michael

>-----Original Message-----
>My Domain Controller is Windows NT server.
>I have windows 2000 server running IIS 5.
>
>It hosts a webpage named www.groupworld.org
>
>It contains a subdirectory named scripts.
>
>D:\groupworld
>D:\groupworld\scripts
>D:\groupworld\scripts\as_web4.exe
>
>But I need improve security to use that file..
>
>I mean, I would like enter user and password to access it.
>
>http://www.groupworld.org/scripts/as_web4.exe?
>Command=SD&File=internet
>
>Please, help me
>
>Thanks,
>
>
>Boris



Relevant Pages

  • [NT] Cumulative Security Update for Internet Explorer (MS04-025)
    ... Get your security news from a reliable source. ... * Microsoft Windows NT Workstation 4.0 Service Pack 6a ... Navigation Method Cross-Domain Vulnerability ...
    (Securiteam)
  • [NT] Vulnerability in HTML Help Allows Code Execution (MS05-001)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Get your security news from a reliable source. ... * Microsoft Windows XP Service Pack 1 and Microsoft Windows XP Service ...
    (Securiteam)
  • Re: The Myth of the secure Mac
    ... OEM Windows XP Home goes for a bit under $100. ... >> secure than Home. ... Though this really has nothing to do with security. ... Microsoft counts on third-party developers to provide more ...
    (comp.sys.mac.advocacy)
  • SecurityFocus Microsoft Newsletter #120
    ... Strengthening Network Security: FREE Guide Network security is a ... MICROSOFT VULNERABILITY SUMMARY ... Microsoft Windows File Protection Signed File Replacement... ... PlatinumFTPServer Information Disclosure Vulnerability ...
    (Focus-Microsoft)
  • SecurityFocus Microsoft Newsletter # 149
    ... MICROSOFT VULNERABILITY SUMMARY ... EveryBuddy Long Message Denial Of Service Vulnerability ... Intellitactics Network Security Manager ... Windows operating systems. ...
    (Focus-Microsoft)

Quantcast