CVE-1999-0281
CVSS 2.0 Score 5 of 10 (medium)
Details
Summary
CVE-1999-0281 is a denial-of-service vulnerability affecting Microsoft Internet Information Services (IIS). The issue arises when IIS fails to handle long URLs, resulting in an excessive consumption of system resources. Malicious actors can exploit this vulnerability by crafting specially crafted URLs to cause IIS to enter an infinite loop, leading to a denial-of-service condition. This vulnerability poses a significant risk to systems running IIS, particularly those that receive a large volume of URL requests. It is recommended that affected organizations apply the available patches as soon as possible to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft IIS
Affected Vendors
- Microsoft