CVE-1999-0349

CVSS 2.0 Score 7.5 of 10 (high)

Details

Published Jan 27, 1999
Updated: Nov 20, 2024
CWE ID 119

Summary

CVE-1999-0349 is a buffer overflow vulnerability affecting the FTP list (ls) command in Internet Information Services (IIS) from Microsoft. An attacker can exploit this flaw to cause a denial of service and potentially execute arbitrary commands remotely. The vulnerability arises due to an improperly validated user input in the FTP service, leading to a buffer overflow condition. This issue could result in significant security risks if exploited, requiring affected IIS installations to be patched promptly.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share