CVE-2003-1566

Microsoft Internet Information Services (IIS) 5.0 does not log requests that use the TRACK method, which allows remote attackers to obtain sensitive information without detection.

Scoring

Severity
MEDIUM
CVSS base score
5
CVSS vector
AV:N/AC:L/Au:N/C:N/I:P/A:N
EPSS probability
9.30%
Published
2009-01-15
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs