Vulnerabilities > CVE-1999-0448 - Unspecified vulnerability in Microsoft Internet Information Server 4.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
microsoft
exploit available

Summary

IIS 4.0 and Apache log HTTP request methods, regardless of how long they are, allowing a remote attacker to hide the URL they really request.

Vulnerable Configurations

Part Description Count
Application
Microsoft
1

Exploit-Db

descriptionNT IIS4 Log Avoidance Vulnerability. CVE-1999-0448. Remote exploit for windows platform
idEDB-ID:19149
last seen2016-02-02
modified1999-01-22
published1999-01-22
reporterMnemonix
sourcehttps://www.exploit-db.com/download/19149/
titleNT IIS4 Log Avoidance Vulnerability