Description In IIS, remote attackers can obtain source code for ASP files by appending "::$DATA" to the URL. Remediation References CVE-1999-0278 Related Vulnerabilities WordPress Plugin Multi Rating Multiple Vulnerabilities (5.0.5) WordPress Plugin Facebook Page Photo Gallery Cross-Site Scripting (2.0.9) Jenkins Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') Vulnerability (CVE-2017-1000393) WordPress Plugin Buddy Share It Allusers FB YR Arbitrary File Upload (3.2.8) MySQL CVE-2024-21101 Vulnerability (CVE-2024-21101) Severity Medium Classification CVE-1999-0278 Tags Missing Update Known Vulnerabilities