Security Incidents mailing list archives

FW: Footprints of ASP ISAPI filter buffer overflows


From: Jonathon.Kalaugher () sbg-ap com
Date: Fri, 12 Apr 2002 15:34:22 +1200

Hello security people,

re:   Cumulative Patch for Internet Information Services (Q319733)

Has anybody found or know of a "footprint" left by the ASP ISAPI extension
overflow in IIS web logs?

Has anybody a copy of some log files that contain such for general review
by the community?

A customer was vulnerable to this attack and I would like to find out if
he was compromised.

Thanking you all in advance.

Jon


----------------------------------------------------------------------------
This list is provided by the SecurityFocus ARIS analyzer service.
For more information on this free incident handling, management 
and tracking system please see: http://aris.securityfocus.com


Current thread: