# CVE-2003-0105

## Summary

- **CVE ID:** CVE-2003-0105
- **Severity:** UNKNOWN
- **CVSS Score:** 0.03
- **CWE:** N/A
- **Published:** Aug 18, 2004
- **Last Modified:** Mar 16, 2026

## Description

ServerMask 2.2 and earlier does not obfuscate (1) ETag, (2) HTTP Status Message, or (3) Allow HTTP responses, which could tell remote attackers that the web server is an IIS server.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](https://exchange.xforce.ibmcloud.com/vulnerabilities/16947)
- [CNA](http://www.corsaire.com/advisories/c030224-001.txt)
- [CNA](http://marc.info/?l=bugtraq&m=109215441332682&w=2)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.63%
- **EPSS Percentile:** 69.9

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-19._