I've read in a number of articles that giving IUSR_SERVER write permissions creates a huge security risk. I'm working with a databaseless CMS using ASP/VBScript that needs IUSR set to read/write in order to function. Is there a way to allow the CMS to modify files without creating a security...