Web Hack List

Collected research

IIS5.1 Directory Authentication Bypass by using ":$I30:$Index_Allocation"

IIS5.1 Directory Authentication Bypass by using “:$I30:$Index_Allocation”

Appending the NTFS alternate data stream name ':$I30:$INDEX_ALLOCATION' to a directory in an IIS 5.1 URL reaches the same folder while defeating directory-based authentication, because IIS matches only the literal directory name. IIS 6 and 7 reject a colon before the query string, and '::$DATA' is already blocked in 5.1.

Record

Document
IIS5.1 Directory Authentication Bypass by using “:$I30:$Index_Allocation”
Researcher
Soroush Dalili
Published by
soroush.me
Topic
Identity

In the archive

Related sources

Tags

This page is the archive's own catalogue record. The research is the work of Soroush Dalili, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .