[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Access violation in URL error handling

ID: oval:org.mitre.oval:def:12315Date: (C)2010-07-16   (M)2022-10-10
Class: VULNERABILITYFamily: windows




The w3svc.dll ISAPI filter in Front Page Server Extensions and ASP.NET for Internet Information Server (IIS) 4.0, 5.0, and 5.1 does not properly handle the error condition when a long URL is provided, which allows remote attackers to cause a denial of service (crash) when the URL parser accesses a null pointer.

Platform:
Microsoft Windows 2000
Microsoft Windows NT
Microsoft Windows XP
Product:
Microsoft Internet Information Server (IIS)
Reference:
CVE-2002-0072
CVE    1
CVE-2002-0072
CPE    6
cpe:/a:microsoft:iis:5.0
cpe:/a:microsoft:iis:5.1
cpe:/o:microsoft:windows_2000
cpe:/a:microsoft:iis:4.0
...

© SecPod Technologies