The CERT Coordination Center publishes incident notes to provide
information about incidents to the Internet community.
Attacks against IIS web servers involving MDAC
Friday, December 10, 1999
We have received reports of IIS web servers compromised via a
vulnerability in MS Data Access Components (MDAC). This vulnerability
has been widely discussed as early as April 22, 1998. Here are some
pointers to information about this vulnerability:
In incidents reported to us so far, attacks can be identified by
looking through the IIS log files for POST access to the file
"/msadc/msadcs.dll". For example: