10
CVSSv2

CVE-1999-0874

Published: 16/06/1999 Updated: 07/11/2023
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in IIS 4.0 allows remote malicious users to cause a denial of service via a malformed request for files with .HTR, .IDC, or .STM extensions.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet information server 4.0

microsoft windows nt 4.0

microsoft windows nt

microsoft windows 2000

Exploits

source: wwwsecurityfocuscom/bid/307/info Microsoft IIS reported prone to a buffer overflow vulnerability in the way IIS handles requests for several file types that require server side processing This vulnerability may allow a remote attacker to execute arbitrary code on the target machine IIS supports a number of file extensions ...
source: wwwsecurityfocuscom/bid/307/info Microsoft IIS reported prone to a buffer overflow vulnerability in the way IIS handles requests for several file types that require server side processing This vulnerability may allow a remote attacker to execute arbitrary code on the target machine IIS supports a number of file extensions t ...
source: wwwsecurityfocuscom/bid/307/info Microsoft IIS reported prone to a buffer overflow vulnerability in the way IIS handles requests for several file types that require server side processing This vulnerability may allow a remote attacker to execute arbitrary code on the target machine IIS supports a number of file extensions tha ...
source: wwwsecurityfocuscom/bid/307/info Microsoft IIS reported prone to a buffer overflow vulnerability in the way IIS handles requests for several file types that require server side processing This vulnerability may allow a remote attacker to execute arbitrary code on the target machine IIS supports a number of file extensions that ...
## # $Id: ms02_018_htrrb 9179 2010-04-30 08:40:19Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' class Met ...