Microsoft IIS 4.0 and 5.0 with the IISADMPWD virtual directory installed allows a remote attacker to cause a denial of service via a malformed request to the inetinfo.exe program, aka the "Undelimited .HTR Request" vulnerability.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/1191 | vdb entry |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-031 | vendor advisory |
http://xforce.iss.net/alerts/advise52.php3 | third party advisory |