Vulnerabilities > Microsoft > Internet Information Server > 4.0

DATE CVE VULNERABILITY TITLE RISK
2006-12-15 CVE-2006-6579 Unspecified vulnerability in Microsoft products
Microsoft Windows XP has weak permissions (FILE_WRITE_DATA and FILE_READ_DATA for Everyone) for %WINDIR%\pchealth\ERRORREP\QHEADLES, which allows local users to write and read files in this folder, as demonstrated by an ASP shell that has write access by IWAM_machine and read access by IUSR_Machine.
local
microsoft
4.4
2004-08-06 CVE-2004-0205 Remote Buffer Overflow vulnerability in Microsoft IIS 4 Redirect
Buffer overflow in Microsoft Internet Information Server (IIS) 4.0 allows local users to execute arbitrary code via the redirect function.
local
low complexity
avaya microsoft
7.2
2003-06-09 CVE-2003-0225 Unspecified vulnerability in Microsoft products
The ASP function Response.AddHeader in Microsoft Internet Information Server (IIS) 4.0 and 5.0 does not limit memory requests when constructing headers, which allow remote attackers to generate a large header to cause a denial of service (memory consumption) with an ASP page.
network
low complexity
microsoft
5.0
2003-06-09 CVE-2003-0223 Unspecified vulnerability in Microsoft products
Cross-site scripting vulnerability (XSS) in the ASP function responsible for redirection in Microsoft Internet Information Server (IIS) 4.0, 5.0, and 5.1 allows remote attackers to embed a URL containing script in a redirection message.
network
microsoft
6.8
2002-12-31 CVE-2002-1790 Unspecified vulnerability in Microsoft products
The SMTP service in Microsoft Internet Information Services (IIS) 4.0 and 5.0 allows remote attackers to bypass anti-relaying rules and send spam or spoofed messages via encapsulated SMTP addresses, a similar vulnerability to CVE-1999-0682.
network
low complexity
microsoft
5.0
2002-12-31 CVE-2002-1695 Norton Internet Security 2001 opens log files with FILE_SHARE_READ and FILE_SHARE_WRITE permissions, which could allow remote attackers to modify the log file contents while Norton Internet Security is running.
network
low complexity
microsoft symantec
5.0
2002-12-31 CVE-2002-1694 Unspecified vulnerability in Microsoft products
Microsoft Internet Information Server (IIS) 4.0 opens log files with FILE_SHARE_READ and FILE_SHARE_WRITE permissions, which could allow remote attackers to modify the log file contents while IIS is running.
network
low complexity
microsoft
5.0
2002-11-12 CVE-2002-1181 Unspecified vulnerability in Microsoft products
Multiple cross-site scripting (XSS) vulnerabilities in the administrative web pages for Microsoft Internet Information Server (IIS) 4.0 through 5.1 allow remote attackers to execute HTML script as other users through (1) a certain ASP file in the IISHELP virtual directory, or (2) possibly other unknown attack vectors.
network
microsoft
6.8
2002-11-12 CVE-2002-0869 Unspecified vulnerability in Microsoft products
Unknown vulnerability in the hosting process (dllhost.exe) for Microsoft Internet Information Server (IIS) 4.0 through 5.1 allows remote attackers to gain privileges by executing an out of process application that acquires LocalSystem privileges, aka "Out of Process Privilege Elevation."
network
low complexity
microsoft
7.5
2002-08-12 CVE-2002-0419 Information Exposure vulnerability in Microsoft products
Information leaks in IIS 4 through 5.1 allow remote attackers to obtain potentially sensitive information or more easily conduct brute force attacks via responses from the server in which (2) in certain configurations, the server IP address is provided as the realm for Basic authentication, which could reveal real IP addresses that were obscured by NAT, or (3) when NTLM authentication is used, the NetBIOS name of the server and its Windows NT domain are revealed in response to an Authorization request.
network
low complexity
microsoft CWE-200
5.0