EIP-2026-118793
PRE-CVEMicrosoft IIS 5.0 - User Existence Disclosure (2)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-118793. PoCs published by JeiAr.
AI-analyzed exploit summary This script is a user enumeration tool for Microsoft IIS, exploiting an information leak vulnerability where different error messages are returned based on whether a user exists. It performs a dictionary attack against the IIS Authentication Manager to identify valid user accounts.
Description
Microsoft IIS 5.0 - User Existence Disclosure (2)
Exploits (1)
This script is a user enumeration tool for Microsoft IIS, exploiting an information leak vulnerability where different error messages are returned based on whether a user exists. It performs a dictionary attack against the IIS Authentication Manager to identify valid user accounts.