Description
Off-by-one error in the CodeBrws.asp sample script in Microsoft IIS 5.0 allows remote attackers to view the source code for files with extensions containing with one additional character after .html, .htm, .asp, or .inc, such as .aspx files.
Remediation
References
Related Vulnerabilities
OpenSSL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2178)
Jenkins Uncontrolled Resource Consumption Vulnerability (CVE-2021-28165)
Joomla! Core 3.x.x Cross-Site Scripting (3.0.0 - 3.2.2)
MySQL CVE-2019-2814 Vulnerability (CVE-2019-2814)
PHP Resource Management Errors Vulnerability (CVE-2015-8877)