PT-1999-1613 · Microsoft · Iis
Published
1999-12-31
·
Updated
2017-10-10
·
CVE-1999-1223
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
IIS version 3.0
Description
The issue allows remote attackers to cause a denial of service by sending a request to an ASP page with a URL containing a large number of / (forward slash) characters.
Recommendations
For IIS version 3.0, consider restricting access to ASP pages or limiting the length of URLs to prevent denial of service attacks.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Iis