Authentication Bypass in Microsoft ISA Server 2006
CVE-2009-1135

Currently unrated

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
15 July 2009

What is CVE-2009-1135?

The vulnerability in Microsoft Internet Security and Acceleration (ISA) Server 2006 allows remote attackers to exploit the Radius OTP feature when HTTP-Basic authentication is enabled. This enables an attacker to gain unauthorized access to network resources and potentially control over arbitrary user accounts. As a result, sensitive web pages behind the ISA Server may be exposed, leading to serious security risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

EPSS Score

39% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.