CVE-2000-0304
CVSS 2.0 Score 5.0 of 10 (medium)
Details
Summary
CVE-2000-0304 is a denial-of-service vulnerability affecting Microsoft IIS 4.0 and 5.0 servers with the IISADMPWD virtual directory installed. An attacker can cause a service disruption by sending a malformed request to the inetinfo.exe program. This issue, also known as the "Undelimited .HTR Request" vulnerability, allows an unauthenticated remote user to trigger a denial-of-service condition. Exploitation of this vulnerability can result in a significant downtime for affected systems. It is highly recommended that affected organizations apply the available patches to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft IIS
Affected Vendors
- Microsoft