Internet Information Services Other Vulnerability - CVE-2001-0004
IIS 5.0 and 4.0 allows remote attackers to read the source code for executable web server programs by appending quot3F.htrquot to the requested URL which causes the files to be parsed by the .HTR ISAPI extension aka a variant of the quotFile Fragment Reading via .HTRquot vulnerability.