CVE-2000-0304

3 documents3 sources
Severity
5.0MEDIUM
EPSS
51.7%
top 2.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 10
Latest updateApr 30

Description

Microsoft IIS 4.0 and 5.0 with the IISADMPWD virtual directory installed allows a remote attacker to cause a denial of service via a malformed request to the inetinfo.exe program, aka the "Undelimited .HTR Request" vulnerability.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

🔴Vulnerability Details

2
GHSA
GHSA-7qq3-2c7j-qq7w: Microsoft IIS 42022-04-30
CVEList
CVE-2000-0304: Microsoft IIS 42000-07-12
CVE-2000-0304 (MEDIUM CVSS 5) | Microsoft IIS 4.0 and 5.0 with the | cvebase.io