Immunity, Inc.
Name iis_doubledecode
CVE CVE-2001-0333
Exploit Pack CANVAS
Descriptioniis_doubledecode (MS01-026)
NotesCVE Name: CVE-2001-0333
VENDOR: Microsoft
Notes:
The IIS Double Decode module will automatically use tftp to get a MOSDEF node on the remote target.
This will not work through a bounced win32 node (due to threading).


Repeatability: Infinite
MSRC: http://www.microsoft.com/technet/security/Bulletin/MS01-026.mspx
MSADV: MS01-026
CVE Url: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2001-0333
CVSS: 7.5

Learn more about the CANVAS Exploit Pack here: CANVAS