CVE-1999-0281

CVSS 2.0 Score 5 of 10 (medium)

Details

Published Jun 1, 1997
Updated: Nov 20, 2024

Summary

CVE-1999-0281 is a denial-of-service vulnerability affecting Microsoft Internet Information Services (IIS). The issue arises when IIS fails to handle long URLs, resulting in an excessive consumption of system resources. Malicious actors can exploit this vulnerability by crafting specially crafted URLs to cause IIS to enter an infinite loop, leading to a denial-of-service condition. This vulnerability poses a significant risk to systems running IIS, particularly those that receive a large volume of URL requests. It is recommended that affected organizations apply the available patches as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share