CVE-1999-0349
CVSS 2.0 Score 7.5 of 10 (high)
Details
Published Jan 27, 1999
Updated: Nov 20, 2024
CWE ID 119
Summary
CVE-1999-0349 is a buffer overflow vulnerability affecting the FTP list (ls) command in Internet Information Services (IIS) from Microsoft. An attacker can exploit this flaw to cause a denial of service and potentially execute arbitrary commands remotely. The vulnerability arises due to an improperly validated user input in the FTP service, leading to a buffer overflow condition. This issue could result in significant security risks if exploited, requiring affected IIS installations to be patched promptly.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Microsoft IIS
Affected Vendors
- Microsoft