PT-2002-1428 · Microsoft · Iis

Published

2002-07-03

·

Updated

2018-10-30

·

CVE-2002-0364

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions IIS versions 4.0 through 5.0
Description The issue is related to a buffer overflow in the chunked encoding transfer mechanism, which allows attackers to execute arbitrary code via the processing of HTR request sessions.
Recommendations For IIS versions 4.0 through 5.0, update to a version that includes the fix for this issue to prevent exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-0364

Affected Products

Iis