PT-2002-1162 · Microsoft · Internet Information Server

Published

2002-04-22

·

Updated

2020-11-23

·

CVE-2002-0073

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Internet Information Server (IIS) versions 4.0 through 5.1
Description The issue allows attackers who have established an FTP session to cause a denial of service via a specially crafted status request containing glob characters.
Recommendations For IIS versions 4.0 through 5.1, consider restricting access to the FTP service until a fix is available. As a temporary workaround, avoid using glob characters in status requests to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-0073

Affected Products

Internet Information Server