Description In IIS, remote attackers can obtain source code for ASP files by appending "::$DATA" to the URL. Remediation References CVE-1999-0278 Related Vulnerabilities PostgreSQL Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-0766) WordPress Plugin Check & Log Email Cross-Site Scripting (0.3) WordPress Plugin WordPress Button Plugin MaxButtons Multiple Cross-Site Scripting Vulnerabilities (1.36) PHP Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVE-2014-3597) Oracle HTTP Server CVE-2013-5704 Vulnerability (CVE-2013-5704) Severity Medium Classification CVE-1999-0278 Tags Missing Update Known Vulnerabilities