2.1
CVSSv2

CVE-2000-0167

Published: 15/02/2000 Updated: 10/09/2008
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 215
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

IIS Inetinfo.exe allows local users to cause a denial of service by creating a mail file with a long name and a .txt.eml extension in the pickup directory.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet information server 4.0

Exploits

source: wwwsecurityfocuscom/bid/1819/info An email with a filename consisting of over 86 characters and an extension of txteml will cause Microsoft IIS to crash if placed in the \mailroot\pickup directory The process inetinfoexe will crash, resulting in a Dr Watson access violation error Restarting IIS is required in order to regain ...