CVE-1999-1520
UnknownEPSS 10.64%
Last modified
CVE-1999-1520 is a vulnerability of currently unknown severity. A configuration problem in the Ad Server Sample directory (AdSamples) in Microsoft Site Server 3.0 allows an attacker to obtain the SITE.CSC file, which exposes sensitive SQL database information.. EPSS estimates a 10.64% chance of exploitation in the next 30 days.
Description
A configuration problem in the Ad Server Sample directory (AdSamples) in Microsoft Site Server 3.0 allows an attacker to obtain the SITE.CSC file, which exposes sensitive SQL database information.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Site Server | 3.0 |
References
- http://www.securityfocus.com/bid/256Exploit, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/256Exploit, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-1999-1520?
A configuration problem in the Ad Server Sample directory (AdSamples) in Microsoft Site Server 3.0 allows an attacker to obtain the SITE.CSC file, which exposes sensitive SQL database information.
How severe is CVE-1999-1520?
Severity scoring for CVE-1999-1520 is pending analysis. The EPSS model estimates a 10.64% probability of exploitation in the next 30 days.
How do I fix CVE-1999-1520?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 1999
- CVE-1999-1514Buffer overflow in Celtech ExpressFS FTP server 2.x allows r…
- CVE-1999-1515A non-default configuration in TenFour TFS Gateway 4.0 allow…
- CVE-1999-1516A buffer overflow in TenFour TFS Gateway SMTP mail server 3.…
- CVE-1999-1517runtar in the Amanda backup system used in various UNIX oper…
- CVE-1999-1518Operating systems with shared memory implementations based o…
- CVE-1999-1519Gene6 G6 FTP Server 2.0 allows a remote attacker to cause a …
- CVE-1999-1521Computalynx CMail 2.4 and CMail 2.3 SP2 SMTP servers are vul…
- CVE-1999-1522Vulnerability in htmlparse.pike in Roxen Web Server 1.3.11 a…
- CVE-1999-1523Buffer overflow in Sambar Web Server 4.2.1 allows remote att…
- CVE-1999-1524FlowPoint DSL router firmware versions prior to 3.0.8 allows…
- CVE-1999-1526Auto-update feature of Macromedia Shockwave 7 transmits a us…
- CVE-1999-1527Internal HTTP server in Sun Netbeans Java IDE in Netbeans De…
Are you affected by CVE-1999-1520?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
