cbcvebase.

Microsoft Internet Information Services vulnerabilities

88 known vulnerabilities affecting microsoft/internet_information_services.

Total CVEs
88
CISA KEV
1
actively exploited
Public exploits
38
Exploited in wild
7
Severity breakdown
CRITICAL7HIGH31MEDIUM47LOW3

Vulnerabilities

Page 2 of 5
CVE-2010-1899P3MEDIUMCVSS 4.3PoCv7.52010-09-15
CVE-2010-1899 [MEDIUM] CWE-119 CVE-2010-1899: Stack consumption vulnerability in the ASP implementation in Microsoft Internet Information Services Stack consumption vulnerability in the ASP implementation in Microsoft Internet Information Services (IIS) 5.1, 6.0, 7.0, and 7.5 allows remote attackers to cause a denial of service (daemon outage) via a crafted request, related to asp.dll, aka "IIS Repeated Parameter Request Denial of Service Vulnerability."
nvd
CVE-2002-0148P3HIGHCVSS 7.5PoCv5.02002-04-22
CVE-2002-0148 [HIGH] CVE-2002-0148: Cross-site scripting vulnerability in Internet Information Server (IIS) 4.0, 5.0 and 5.1 allows remo Cross-site scripting vulnerability in Internet Information Server (IIS) 4.0, 5.0 and 5.1 allows remote attackers to execute arbitrary script as other users via an HTTP error page.
nvd
CVE-2000-0246P4MEDIUMCVSS 5.0PoCv5.02000-03-30
CVE-2000-0246 [MEDIUM] CVE-2000-0246: IIS 4.0 and 5.0 does not properly perform ISAPI extension processing if a virtual directory is mappe IIS 4.0 and 5.0 does not properly perform ISAPI extension processing if a virtual directory is mapped to a UNC share, which allows remote attackers to read the source code of ASP and other files, aka the "Virtualized UNC Share" vulnerability.
nvd
CVE-2000-0457P4HIGHCVSS 7.5PoCv5.02000-05-11
CVE-2000-0457 [HIGH] CVE-2000-0457: ISM.DLL in IIS 4.0 and 5.0 allows remote attackers to read file contents by requesting the file and ISM.DLL in IIS 4.0 and 5.0 allows remote attackers to read file contents by requesting the file and appending a large number of encoded spaces (%20) and terminated with a .htr extension, aka the ".HTR File Fragment Reading" or "File Fragment Reading via .HTR" vulnerability.
nvd
CVE-1999-0412P3HIGHCVSS 7.5PoCv2.01999-02-19
CVE-1999-0412 [HIGH] CVE-1999-0412: In IIS and other web servers, an attacker can attack commands as SYSTEM if the server is running as In IIS and other web servers, an attacker can attack commands as SYSTEM if the server is running as SYSTEM and loading an ISAPI extension.
nvd
CVE-2002-0419P4MEDIUMCVSS 5.0PoCv5.02002-08-12
CVE-2002-0419 [MEDIUM] CWE-200 CVE-2002-0419: Information leaks in IIS 4 through 5.1 allow remote attackers to obtain potentially sensitive inform Information leaks in IIS 4 through 5.1 allow remote attackers to obtain potentially sensitive information or more easily conduct brute force attacks via responses from the server in which (2) in certain configurations, the server IP address is provided as the realm for Basic authentication, which could reveal real IP addresses that were obscured by NA
nvd
CVE-2000-0649P4LOWCVSS 2.6PoCv2.0v5.02000-07-13
CVE-2000-0649 [LOW] CWE-200 CVE-2000-0649: IIS 4.0 allows remote attackers to obtain the internal IP address of the server via an HTTP 1.0 requ IIS 4.0 allows remote attackers to obtain the internal IP address of the server via an HTTP 1.0 request for a web page which is protected by basic authentication and has no realm defined.
nvd
CVE-2001-0506P4HIGHCVSS 7.2PoCv5.02001-09-20
CVE-2001-0506 [HIGH] CVE-2001-0506: Buffer overflow in ssinc.dll in IIS 5.0 and 4.0 allows local users to gain system privileges via a S Buffer overflow in ssinc.dll in IIS 5.0 and 4.0 allows local users to gain system privileges via a Server-Side Includes (SSI) directive for a long filename, which triggers the overflow when the directory name is added, aka the "SSI privilege elevation" vulnerability.
nvd
CVE-2009-4444P3MEDIUMCVSS 6.0v5.0v6.02009-12-29
CVE-2009-4444 [MEDIUM] CVE-2009-4444: Microsoft Internet Information Services (IIS) 5.x and 6.x uses only the portion of a filename before Microsoft Internet Information Services (IIS) 5.x and 6.x uses only the portion of a filename before a ; (semicolon) character to determine the file extension, which allows remote attackers to bypass intended extension restrictions of third-party upload applications via a filename with a (1) .asp, (2) .cer, or (3) .asa first extension, followed by a semicolon
nvd
CVE-1999-0450P4HIGHCVSS 7.5PoCv2.0v5.01999-01-26
CVE-1999-0450 [HIGH] CVE-1999-0450: In IIS, an attacker could determine a real path using a request for a non-existent URL that would be In IIS, an attacker could determine a real path using a request for a non-existent URL that would be interpreted by Perl (perl.exe).
nvd
CVE-2000-0951P4MEDIUMCVSS 5.0PoCv5.02000-12-19
CVE-2000-0951 [MEDIUM] CVE-2000-0951: A misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote att A misconfiguration in IIS 5.0 with Index Server enabled and the Index property set allows remote attackers to list directories in the web root via a Web Distributed Authoring and Versioning (WebDAV) search.
nvd
CVE-2003-1566P4MEDIUMCVSS 5.0PoCv5.02009-01-15
CVE-2003-1566 [MEDIUM] CWE-16 CVE-2003-1566: Microsoft Internet Information Services (IIS) 5.0 does not log requests that use the TRACK method, w Microsoft Internet Information Services (IIS) 5.0 does not log requests that use the TRACK method, which allows remote attackers to obtain sensitive information without detection.
nvd
CVE-1999-0154P4MEDIUMCVSS 5.0PoCv2.01999-12-31
CVE-1999-0154 [MEDIUM] CVE-1999-0154: IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) to the end of the URL.
nvd
CVE-2001-1243P4MEDIUMCVSS 5.0PoCv5.02001-07-04
CVE-2001-1243 [MEDIUM] CVE-2001-1243: Scripting.FileSystemObject in asp.dll for Microsoft IIS 4.0 and 5.0 allows local or remote attackers Scripting.FileSystemObject in asp.dll for Microsoft IIS 4.0 and 5.0 allows local or remote attackers to cause a denial of service (crash) via (1) creating an ASP program that uses Scripting.FileSystemObject to open a file with an MS-DOS device name, or (2) remotely injecting the device name into ASP programs that internally use Scripting.FileSystemObject.
nvd
CVE-2002-0422P4LOWCVSS 2.6PoCv5.02002-08-12
CVE-2002-0422 [LOW] CWE-200 CVE-2002-0422: IIS 5 and 5.1 supporting WebDAV methods allows remote attackers to determine the internal IP address IIS 5 and 5.1 supporting WebDAV methods allows remote attackers to determine the internal IP address of the system (which may be obscured by NAT) via (1) a PROPFIND HTTP request with a blank Host header, which leaks the address in an HREF property in a 207 Multi-Status response, or (2) via the WRITE or MKCOL method, which leaks the IP in the Location ser
nvd
CVE-2000-0630P4MEDIUMCVSS 5.0PoCv5.02000-07-17
CVE-2000-0630 [MEDIUM] CVE-2000-0630: IIS 4.0 and 5.0 allows remote attackers to obtain fragments of source code by appending a +.htr to t IIS 4.0 and 5.0 allows remote attackers to obtain fragments of source code by appending a +.htr to the URL, a variant of the "File Fragment Reading via .HTR" vulnerability.
nvd
CVE-2003-1567P3HIGHCVSS 7.5v5.02009-01-15
CVE-2003-1567 [HIGH] CWE-200 CVE-2003-1567: The undocumented TRACK method in Microsoft Internet Information Services (IIS) 5.0 returns the conte The undocumented TRACK method in Microsoft Internet Information Services (IIS) 5.0 returns the content of the original request in the body of the response, which makes it easier for remote attackers to steal cookies and authentication credentials, or bypass the HttpOnly protection mechanism, by using TRACK to read the contents of the HTTP headers that a
nvd
CVE-2002-1790P4MEDIUMCVSS 5.0PoCv5.02002-12-31
CVE-2002-1790 [MEDIUM] CVE-2002-1790: The SMTP service in Microsoft Internet Information Services (IIS) 4.0 and 5.0 allows remote attacker The SMTP service in Microsoft Internet Information Services (IIS) 4.0 and 5.0 allows remote attackers to bypass anti-relaying rules and send spam or spoofed messages via encapsulated SMTP addresses, a similar vulnerability to CVE-1999-0682.
nvd
CVE-2001-0151P4MEDIUMCVSS 5.0PoCv5.02001-06-02
CVE-2001-0151 [MEDIUM] CVE-2001-0151: IIS 5.0 allows remote attackers to cause a denial of service via a series of malformed WebDAV reques IIS 5.0 allows remote attackers to cause a denial of service via a series of malformed WebDAV requests.
nvd
CVE-2002-0147P3HIGHCVSS 7.5v5.02002-04-22
CVE-2002-0147 [HIGH] CVE-2002-0147: Buffer overflow in the ASP data transfer mechanism in Internet Information Server (IIS) 4.0, 5.0, an Buffer overflow in the ASP data transfer mechanism in Internet Information Server (IIS) 4.0, 5.0, and 5.1 allows remote attackers to cause a denial of service or execute code, aka "Microsoft-discovered variant of Chunked Encoding buffer overrun."
nvd
Microsoft Internet Information Services vulnerabilities | cvebase