PT-2000-1809 · Microsoft · Iis

Publicado

2000-12-19

·

Atualizado

2018-10-30

·

CVE-2000-0886

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions IIS version 5.0
Description The issue allows remote attackers to execute arbitrary commands by sending a malformed request for an executable file whose name is appended with operating system commands.
Recommendations For IIS version 5.0, update to a newer version that includes a fix for this issue to prevent remote attackers from executing arbitrary commands.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2000-0886

Produtos afetados

Iis