CVE-1999-1233

IIS 4.0 does not properly restrict access for the initial session request from a user's IP address if the address does not resolve to a DNS domain, aka the "Domain Resolution" vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*

History

20 Nov 2024, 23:30

Type Values Removed Values Added
References () http://support.microsoft.com/support/kb/articles/Q241/5/62.asp - Patch, Vendor Advisory () http://support.microsoft.com/support/kb/articles/Q241/5/62.asp - Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/657 - Exploit, Patch, Vendor Advisory () http://www.securityfocus.com/bid/657 - Exploit, Patch, Vendor Advisory
References () https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-039 - () https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-039 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/3306 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/3306 -

Information

Published : 1999-12-31 05:00

Updated : 2024-11-20 23:30


NVD link : CVE-1999-1233

Mitre link : CVE-1999-1233

CVE.ORG link : CVE-1999-1233


JSON object : View

Products Affected

microsoft

  • internet_information_server