CVE-1999-1148
CVSS 2.0 Score 5 of 10 (medium)
Details
Published Dec 31, 1999
Updated: Nov 20, 2024
Summary
CVE-1999-1148 is a vulnerability affecting the FTP service in Internet Information Services (IIS) 4.0 and earlier. Malicious actors can exploit this issue by overwhelming the server with multiple passive connections simultaneously. This denial of service attack consumes the server's resources, leading to a service outage. With passive connections, the attacker does not initiate the data transfer, making it more difficult to detect and protect against.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Microsoft IIS
Affected Vendors
- Microsoft