CVE-2001-0334

FTP service in IIS 5.0 and earlier allows remote attackers to cause a denial of service via a wildcard sequence that generates a long string when it is expanded.
Configurations

Configuration 1 (hide)

cpe:2.3:a:microsoft:internet_information_server:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:35

Type Values Removed Values Added
References () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-026 - Patch, Vendor Advisory () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-026 - Patch, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/6535 - Third Party Advisory, VDB Entry () https://exchange.xforce.ibmcloud.com/vulnerabilities/6535 - Third Party Advisory, VDB Entry

02 Feb 2024, 03:06

Type Values Removed Values Added
References (MS) https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-026 - (MS) https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-026 - Patch, Vendor Advisory
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/6535 - (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/6535 - Third Party Advisory, VDB Entry
CWE NVD-CWE-Other CWE-131
CVSS v2 : 5.0
v3 : unknown
v2 : 5.0
v3 : 7.5

Information

Published : 2001-06-27 04:00

Updated : 2024-11-20 23:35


NVD link : CVE-2001-0334

Mitre link : CVE-2001-0334

CVE.ORG link : CVE-2001-0334


JSON object : View

Products Affected

microsoft

  • internet_information_server
CWE
CWE-131

Incorrect Calculation of Buffer Size