Vulnerabilities > CVE-2002-0071 - Buffer Overflow vulnerability in Microsoft products

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
microsoft
nessus

Summary

Buffer overflow in the ism.dll ISAPI extension that implements HTR scripting in Internet Information Server (IIS) 4.0 and 5.0 allows attackers to cause a denial of service or execute arbitrary code via HTR requests with long variable names.

Vulnerable Configurations

Part Description Count
Application
Microsoft
2

Nessus

  • NASL familyWeb Servers
    NASL idIIS_HTR_ISAPI.NASL
    descriptionThe IIS server appears to have the .HTR ISAPI filter mapped. At least one remote vulnerability has been discovered for the .HTR filter. This is detailed in Microsoft Advisory MS02-018, and gives remote SYSTEM level access to the web server. It is recommended that, even if you have patched this vulnerability, you unmap the .HTR extension and any other unused ISAPI extensions if they are not required for the operation of your site.
    last seen2020-06-01
    modified2020-06-02
    plugin id10932
    published2002-04-10
    reporterThis script is Copyright (C) 2002-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/10932
    titleMicrosoft IIS .HTR ISAPI Filter Enabled
  • NASL familyWindows : Microsoft Bulletins
    NASL idSMB_NT_MS02-018.NASL
    descriptionThe remote version of Windows contains multiple flaws in the Internet Information Service (IIS), such as heap overflow, DoS, and XSS that could allow an attacker to execute arbitrary code on the remote host with SYSTEM privileges.
    last seen2020-06-01
    modified2020-06-02
    plugin id10943
    published2002-04-23
    reporterThis script is Copyright (C) 2002-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/10943
    titleMS02-018: Cumulative Patch for Internet Information Services (327696)
  • NASL familyWeb Servers
    NASL idIIS_HTR_OVERFLOW.NASL
    descriptionThe remote server is vulnerable to a buffer overflow in the .HTR filter. An attacker may use this flaw to execute arbitrary code on this host (although the exploitation of this flaw is considered difficult).
    last seen2020-06-01
    modified2020-06-02
    plugin id11028
    published2002-06-13
    reporterThis script is Copyright (C) 2002-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/11028
    titleMicrosoft IIS .HTR Filter Multiple Overflows (MS02-028)

Oval

  • accepted2010-12-20T04:00:31.897-05:00
    classvulnerability
    contributors
    • nameTiffany Bergeron
      organizationThe MITRE Corporation
    • nameGlenn Strickland
      organizationSecure Elements, Inc.
    • nameShane Shaffer
      organizationG2, Inc.
    • nameJosh Turpin
      organizationSymantec Corporation
    • nameSudhir Gandhe
      organizationTelos
    • nameShane Shaffer
      organizationG2, Inc.
    descriptionBuffer overflow in the ism.dll ISAPI extension that implements HTR scripting in Internet Information Server (IIS) 4.0 and 5.0 allows attackers to cause a denial of service or execute arbitrary code via HTR requests with long variable names.
    familywindows
    idoval:org.mitre.oval:def:130
    statusdeprecated
    submitted2004-01-14T12:00:00.000-04:00
    titleDEPRECATED: Windows 2000 HTR ISAPI Buffer Overflow
    version33
  • accepted2007-05-23T15:05:46.010-04:00
    classvulnerability
    contributors
    • nameTiffany Bergeron
      organizationThe MITRE Corporation
    • nameGlenn Strickland
      organizationSecure Elements, Inc.
    • nameJosh Turpin
      organizationSymantec Corporation
    descriptionBuffer overflow in the ism.dll ISAPI extension that implements HTR scripting in Internet Information Server (IIS) 4.0 and 5.0 allows attackers to cause a denial of service or execute arbitrary code via HTR requests with long variable names.
    familywindows
    idoval:org.mitre.oval:def:45
    statusdeprecated
    submitted2004-01-14T12:00:00.000-04:00
    titleDEPRECATED: Windows NT HTR ISAPI Buffer Overflow
    version29