Description
By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to identify valid users on the system.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2006-3705 Vulnerability (CVE-2006-3705)
MongoDb Excessive Iteration Vulnerability (CVE-2018-20805)
WordPress Plugin Post Title Counter Cross-Site Scripting (1.1)
Oracle JRE Improper Certificate Validation Vulnerability (CVE-2003-1229)
WordPress Plugin Count per Day Search Bar Cross-Site Scripting (3.2.2)