PT-2022-3795 · Microsoft · Internet Information Services+1

Orange_8361

·

Published

2022-07-12

·

Updated

2023-08-08

·

CVE-2022-22040

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Internet Information Services (IIS) (affected versions not specified)
Description The issue is related to an uncontrolled consumption of resources in the Microsoft Internet Information Services (IIS) package, which can lead to a denial-of-service condition. This can be exploited by a remote attacker to cause a service disruption.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-04590
CVE-2022-22040

Affected Products

Internet Information Services
Windows