Description In IIS, remote attackers can obtain source code for ASP files by appending "::$DATA" to the URL. Remediation References CVE-1999-0278 Related Vulnerabilities WordPress Plugin EME Sync Facebook Events Unspecified Vulnerability (1.0.38) Dolibarr Missing Authorization Vulnerability (CVE-2018-10092) Chamilo Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2012-4029) WordPress Plugin Email Subscribers by Icegram Express-Email Marketing, Newsletters, Automation for WordPress & WooCommerce Information Disclosure (3.4.7) Atlassian Jira Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2019-11588) Severity Medium Classification CVE-1999-0278 Tags Missing Update Known Vulnerabilities