5
CVSSv2

CVE-2001-1186

Published: 11/12/2001 Updated: 30/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Microsoft IIS 5.0 allows remote malicious users to cause a denial of service via an HTTP request with a content-length value that is larger than the size of the request, which prevents IIS from timing out the connection.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet information services 5.0

Exploits

source: wwwsecurityfocuscom/bid/3667/info Microsoft IIS 50 may be prone to a denial of service condition when sent a specially crafted malformed HTTP GET header If an IIS 50 web server is sent a crafted HTTP GET request which contains a falsified and excessive "Content-Length" field, it behaves in an unusual manner The server keeps t ...