Vulnerabilities > CVE-2004-1134 - Unspecified vulnerability in Microsoft W3Who.Dll
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
COMPLETE Integrity impact
COMPLETE Availability impact
COMPLETE Summary
Buffer overflow in the Microsoft W3Who ISAPI (w3who.dll) allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long query string.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Microsoft IIS ISAPI w3who.dll Query String Overflow. CVE-2004-1134. Remote exploit for windows platform |
id | EDB-ID:16354 |
last seen | 2016-02-01 |
modified | 2010-07-07 |
published | 2010-07-07 |
reporter | metasploit |
source | https://www.exploit-db.com/download/16354/ |
title | Microsoft IIS ISAPI w3who.dll Query String Overflow |
Metasploit
description | This module exploits a stack buffer overflow in the w3who.dll ISAPI application. This vulnerability was discovered Nicolas Gregoire and this code has been successfully tested against Windows 2000 and Windows XP (SP2). When exploiting Windows XP, the payload must call RevertToSelf before it will be able to spawn a command shell. |
id | MSF:EXPLOIT/WINDOWS/ISAPI/W3WHO_QUERY |
last seen | 2020-05-22 |
modified | 2017-07-24 |
published | 2006-07-31 |
references | |
reporter | Rapid7 |
source | https://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/windows/isapi/w3who_query.rb |
title | Microsoft IIS ISAPI w3who.dll Query String Overflow |
Nessus
NASL family | CGI abuses |
NASL id | W3WHO_DLL.NASL |
description | The Windows 2000 Resource Kit ships with a DLL that displays the browser client context. It lists security identifiers, privileges and $ENV variables. Nessus has determined that this file is installed on the remote host. The w3who.dll ISAPI may allow an attacker to execute arbitrary commands on this host, through a buffer overflow, or to mount cross-site scripting attacks. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 15910 |
published | 2004-12-06 |
reporter | This script is Copyright (C) 2004-2018 Nicolas Gregoire <[email protected]> |
source | https://www.tenable.com/plugins/nessus/15910 |
title | Microsoft W3Who ISAPI w3who.dll Multiple Remote Vulnerabilities |
code |
|
Packetstorm
data source https://packetstormsecurity.com/files/download/35687/iis_w3who_overflow.pm id PACKETSTORM:35687 last seen 2016-12-05 published 2005-01-12 reporter H D Moore source https://packetstormsecurity.com/files/35687/iis_w3who_overflow.pm.html title iis_w3who_overflow.pm data source https://packetstormsecurity.com/files/download/82993/w3who_query.rb.txt id PACKETSTORM:82993 last seen 2016-12-05 published 2009-11-26 reporter H D Moore source https://packetstormsecurity.com/files/82993/Microsoft-IIS-ISAPI-w3who.dll-Query-String-Overflow.html title Microsoft IIS ISAPI w3who.dll Query String Overflow