WEB_FRONTPAGE service.cnf access

 

Code: p1089

Severity: Warning

 

Description: This event is generated when an attempt is made to access a file with sensitive information on a webserver with Microsoft Frontpage extensions enabled.

Impact: If successful, the attacker can read sensitive data about the Frontpage web.

Corrective: Disable direct access to the file /_vti_pvt/service.cnf.