Description
In IIS and other web servers, an attacker can attack commands as SYSTEM if the server is running as SYSTEM and loading an ISAPI extension.
Remediation
References
Related Vulnerabilities
Oracle JRE CVE-2013-1476 Vulnerability (CVE-2013-1476)
OpenSSL Cryptographic Issues Vulnerability (CVE-2013-6449)
Jenkins Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-2603)
SharePoint CVE-2023-38177 Vulnerability (CVE-2023-38177)
Oracle Database Server CVE-2010-2415 Vulnerability (CVE-2010-2415)