PT-2001-2321 · Microsoft · Iis
Published
2001-12-11
·
Updated
2018-10-30
·
CVE-2001-1186
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Microsoft IIS version 5.0
Description
The issue allows remote attackers to cause a denial of service via an HTTP request with a content-length value that is larger than the size of the request, which prevents the server from timing out the connection.
Recommendations
For Microsoft IIS version 5.0, consider restricting access to the server or implementing connection timeout limits to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Iis