Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 146377 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.10732
Kategorie:Denial of Service
Titel:Microsoft IIS 5.0 WebDav Memory Leakage Vulnerability - Active Check
Zusammenfassung:The WebDav extensions (httpext.dll) for Internet Information; Server 5.0 contains a flaw that may allow a malicious user to consume all available memory on; the target server by sending many requests using the LOCK method associated to a non; existing filename.;; This concern not only IIS but the entire system since the flaw can; potentially exhausts all system memory available.
Beschreibung:Summary:
The WebDav extensions (httpext.dll) for Internet Information
Server 5.0 contains a flaw that may allow a malicious user to consume all available memory on
the target server by sending many requests using the LOCK method associated to a non
existing filename.

This concern not only IIS but the entire system since the flaw can
potentially exhausts all system memory available.

Affected Software/OS:
Vulnerable systems: IIS 5.0 (httpext.dll versions prior to 0.9.3940.21)

Immune systems: IIS 5 SP2 (httpext.dll version 0.9.3940.21)

Solution:
Download Service Pack 2/hotfixes from Microsoft.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2001-0337
Microsoft Security Bulletin: MS01-026
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-026
CopyrightCopyright (C) 2001 INTRANODE

Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.