Description
Microsoft Internet Information Services (IIS) 5.0 does not log requests that use the TRACK method, which allows remote attackers to obtain sensitive information without detection.
Remediation
References
Related Vulnerabilities
WordPress Plugin Discount Rules for WooCommerce Security Bypass (2.2.0)
WordPress Plugin Sell Photo Cross-Site Scripting (1.0.5)
Squid Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2019-18679)
LimeSurvey Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3752)