5
CVSSv2

CVE-1999-0681

Published: 12/03/2001 Updated: 10/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Buffer overflow in Microsoft FrontPage Server Extensions (PWS) 3.0.2.926 on Windows 95, and possibly other versions, allows remote malicious users to cause a denial of service via a long URL.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft personal web server 1.0

microsoft personal web server 1.1

microsoft frontpage 97

microsoft frontpage 98

Exploits

source: wwwsecurityfocuscom/bid/568/info A 'GET' request for a URL longer than 166 characters will overflow a buffer and cause the web server to crash with the following or similar error message: VHTTPD32 caused an invalid page fault in module VHTTPD32EXE at 0137:0040aaed Registers: EAX=010d7740 CS=0137 EIP=0040aaed EFLGS=00010202 EBX ...