Vulnerabilities > CVE-2003-0349 - Unspecified vulnerability in Microsoft Windows 2000
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability of Microsoft Windows Media Services (nsiislog.dll), as installed in IIS 5.0, allows remote attackers to execute arbitrary code via a large POST request to nsiislog.dll.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 1 |
Exploit-Db
description Microsoft IIS ISAPI nsiislog.dll ISAPI POST Overflow. CVE-2003-0349. Remote exploit for windows platform id EDB-ID:16355 last seen 2016-02-01 modified 2010-07-25 published 2010-07-25 reporter metasploit source https://www.exploit-db.com/download/16355/ title Microsoft IIS ISAPI nsiislog.dll ISAPI POST Overflow description Microsoft Windows 2000/NT 4 Media Services NSIISlog.DLL Remote Buffer Overflow. CVE-2003-0349. Remote exploit for windows platform id EDB-ID:22837 last seen 2016-02-02 modified 2003-06-25 published 2003-06-25 reporter firew0rker source https://www.exploit-db.com/download/22837/ title Microsoft Windows 2000/NT 4 Media Services NSIISlog.DLL Remote Buffer Overflow description MS Windows Media Services Remote Exploit (MS03-022). CVE-2003-0349. Remote exploit for windows platform id EDB-ID:48 last seen 2016-01-31 modified 2003-07-01 published 2003-07-01 reporter firew0rker source https://www.exploit-db.com/download/48/ title Microsoft Windows Media Services - Remote Exploit MS03-022
Metasploit
description | This exploits a buffer overflow found in the nsiislog.dll ISAPI filter that comes with Windows Media Server. This module will also work against the 'patched' MS03-019 version. This vulnerability was addressed by MS03-022. |
id | MSF:EXPLOIT/WINDOWS/ISAPI/MS03_022_NSIISLOG_POST |
last seen | 2020-05-23 |
modified | 2017-07-24 |
published | 2010-07-25 |
references | |
reporter | Rapid7 |
source | https://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/windows/isapi/ms03_022_nsiislog_post.rb |
title | MS03-022 Microsoft IIS ISAPI nsiislog.dll ISAPI POST Overflow |
Nessus
NASL family | Web Servers |
NASL id | NSIISLOG_DLL.NASL |
description | Some versions of IIS shipped with a default file, nsiislog.dll, within the /scripts directory. Nessus has determined that the remote host has the file installed. The NSIISLOG.dll CGI may allow an attacker to execute arbitrary commands on this host, through a buffer overflow. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11664 |
published | 2003-05-28 |
reporter | This script is Copyright (C) 2003-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/11664 |
title | Microsoft Media Services ISAPI nsiislog.dll Multiple Overflows |
code |
|
Oval
accepted | 2004-06-30T12:00:00.000-04:00 | ||||
class | vulnerability | ||||
contributors |
| ||||
description | Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability of Microsoft Windows Media Services (nsiislog.dll), as installed in IIS 5.0, allows remote attackers to execute arbitrary code via a large POST request to nsiislog.dll. | ||||
family | windows | ||||
id | oval:org.mitre.oval:def:938 | ||||
status | accepted | ||||
submitted | 2004-05-18T12:00:00.000-04:00 | ||||
title | IIS5.0 Windows Media Services Large POST Vulnerability | ||||
version | 64 |
Packetstorm
data source https://packetstormsecurity.com/files/download/92137/ms03_022_nsiislog_post.rb.txt id PACKETSTORM:92137 last seen 2016-12-05 published 2010-07-26 reporter H D Moore source https://packetstormsecurity.com/files/92137/Microsoft-IIS-ISAPI-nsiislog.dll-ISAPI-POST-Overflow.html title Microsoft IIS ISAPI nsiislog.dll ISAPI POST Overflow data source https://packetstormsecurity.com/files/download/83155/nsiislog_post.rb.txt id PACKETSTORM:83155 last seen 2016-12-05 published 2009-11-26 reporter H D Moore source https://packetstormsecurity.com/files/83155/Microsoft-IIS-ISAPI-nsiislog.dll-ISAPI-POST-Overflow.html title Microsoft IIS ISAPI nsiislog.dll ISAPI POST Overflow
References
- http://marc.info/?l=bugtraq&m=105665030925504&w=2
- http://marc.info/?l=bugtraq&m=105665030925504&w=2
- http://secunia.com/advisories/9115
- http://secunia.com/advisories/9115
- http://securitytracker.com/id?1007059
- http://securitytracker.com/id?1007059
- http://www.kb.cert.org/vuls/id/113716
- http://www.kb.cert.org/vuls/id/113716
- http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0306&L=NTBUGTRAQ&P=R4563
- http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0306&L=NTBUGTRAQ&P=R4563
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-022
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-022
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A938
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A938