Vulnerabilities > CVE-2000-0408 - Unspecified vulnerability in Microsoft products
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
IIS 4.05 and 5.0 allow remote attackers to cause a denial of service via a long, complex URL that appears to contain a large number of file extensions, aka the "Malformed Extension Data in URL" vulnerability.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Exploit-Db
description | Microsoft IIS 4.0/5.0 Malformed File Extension DoS Vulnerability. CVE-2000-0408. Dos exploit for windows platform |
id | EDB-ID:19907 |
last seen | 2016-02-02 |
modified | 2000-05-11 |
published | 2000-05-11 |
reporter | Ussr Labs |
source | https://www.exploit-db.com/download/19907/ |
title | Microsoft IIS 4.0/5.0 Malformed File Extension DoS Vulnerability |
Nessus
NASL family | Web Servers |
NASL id | IIS_DOS_USSRBACK.NASL |
description | The remote web server is running a version of IIS that allows remote attackers to cause a denial of service via a long, complex URL that appears to contain a large number of file extensions, aka the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 10406 |
published | 2000-05-12 |
reporter | This script is Copyright (C) 2000-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/10406 |
title | Microsoft IIS Malformed File Extension URL DoS |
code |
|
References
- http://www.microsoft.com/technet/support/kb.asp?ID=260205
- http://www.microsoft.com/technet/support/kb.asp?ID=260205
- http://www.securityfocus.com/bid/1190
- http://www.securityfocus.com/bid/1190
- http://www.ussrback.com/labs40.html
- http://www.ussrback.com/labs40.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-030
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-030