PT-2010-3522 · Microsoft · Internet Information Services

Jinsik Shim

·

Publicado

2010-09-15

·

Atualizado

2021-02-05

·

CVE-2010-1899

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Internet Information Services (IIS) versions 5.1 through 7.5
Description A stack consumption issue in the ASP implementation allows remote attackers to cause a denial of service via a crafted request, related to asp.dll. This can lead to a daemon outage.
Recommendations For Microsoft Internet Information Services (IIS) versions 5.1 through 7.5, consider restricting access to the ASP implementation until a fix is available. As a temporary workaround, limiting the size of requests or implementing request filtering may help minimize the risk of exploitation.

Exploit

Correção

DoS

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2010-1899

Produtos afetados

Internet Information Services