PT-1999-1589 · Microsoft · Iis
Published
1999-12-31
·
Updated
2018-10-12
·
CVE-1999-1148
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
IIS versions 4.0 and earlier
Description
The issue allows remote attackers to cause a denial of service, specifically resource exhaustion, by establishing many passive connections at the same time.
Recommendations
For IIS versions 4.0 and earlier, consider restricting the number of simultaneous passive connections to prevent resource exhaustion until a fix is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Iis