When I install the hotfix to fix the "Web Server Folder Traversal" security vulnerability in IIS 4, it kills Active Server Pages. (this vulnerability, by the way, is VERY easily exploitable.) I have confirmed that this happens immediately after installing the hotfix. I get the following error in the system log when I try to execute a .asp: "The HTTP server was unable to load the ISAPI Application 'C:\WINNT\System32
\inetsrv\asp.dll'. The data is the error." Microsoft's Q249826 refers to the exact error but the fix, updating the MDAC, doesn't fix it.
Has anyone seen this before? Or does anyone know of a different way to fix the vulnerability?
Microsoft's info on the vulnerability is at:
A REAL description of the vulnerability can be found at:
\inetsrv\asp.dll'. The data is the error." Microsoft's Q249826 refers to the exact error but the fix, updating the MDAC, doesn't fix it.
Has anyone seen this before? Or does anyone know of a different way to fix the vulnerability?
Microsoft's info on the vulnerability is at:
A REAL description of the vulnerability can be found at: