Do you want to know about them or fix them (or both)

A good place to look for a lot of good advice on deploying IIS 4 or 5 in a secure manner is

http://securityadmin.info/

This site says it is for W2K but most of the info, at least for IIS, apply fairly directly to IIS 4 as well.

Another good information for both NT and W2K site is

http://www.jsiinc.com/reghack.htm

If you want to know the specifics of the identified security weaknesses and consider the patches, try

http://www.microsoft.com/technet/tre...ty/Default.asp

If you want to apply patches using a GUI tool, try HFChkNetlt from
www.shavlik.com

These are only a few.