Outlook Web App (OWA) / Client Access Server (CAS) IIS HTTP Internal IP Disclosure

This Metasploit module tests vulnerable IIS HTTP header file paths on Microsoft Exchange OWA 2003, CAS 2007, 2010, 2013 servers.

Leave a Reply