Hacker News new | ask | show | jobs
by rbanffy 3855 days ago
BTW, one of the first very popular vulnerabilities of IIS involved making it serve a file's source code rather than executing it (a very convenient way to get database login credentials) through a ::$DATA appended to the URL.