cbcvebase.
CVE-2002-0364
published 2002-07-03

CVE-2002-0364: Buffer overflow in the chunked encoding transfer mechanism in IIS 4.0 and 5.0 allows attackers to execute arbitrary code via the processing of HTR request…

PriorityP340high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
23.90%
97.6th percentile
Buffer overflow in the chunked encoding transfer mechanism in IIS 4.0 and 5.0 allows attackers to execute arbitrary code via the processing of HTR request sessions, aka "Heap Overrun in HTR Chunked Encoding Could Enable Web Server Compromise."

Affected

3 ranges
VendorProductVersion rangeFixed in
ciscoproducts_ms02-018
microsoftinternet_information_server
microsoftinternet_information_services

Detection & IOCsextracted from sources · hover to see the quote

  • Target IIS 4.0 and 5.0 via chunked encoding transfer mechanism in HTR request sessions — monitor for malformed chunked-encoding HTTP requests (Transfer-Encoding: chunked) directed at .htr resources
  • Alert on HTTP requests targeting .htr files on IIS 4.0/5.0 servers, particularly those using chunked transfer encoding, as this is the attack vector for heap overrun exploitation
  • ·The vulnerability is in IIS itself (versions 4.0 and 5.0), not in the Cisco product or application installed on top of it — patching IIS is required regardless of the Cisco software layer
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.