all groups > iis security > december 2005 >
You're in the

iis security

group:

Microsoft IIS Remote DoS .DLL Url exploit


Microsoft IIS Remote DoS .DLL Url exploit bencr333
12/22/2005 5:29:03 AM
iis security:
Does anybody know more information in regards to this vulnerability
disclaimed by Inge Henriksen?
"I have found that by doing a malformed anonymous HTTP request one can
remotely crash the IIS service process, inetinfo.exe, using just a simple
tool like a web browser."
More details on the vulnerability: http://ingehenriksen.blogspot.com/
Microsoft's response to this?
Re: Microsoft IIS Remote DoS .DLL Url exploit Bernard Cheah [MVP]
12/25/2005 2:03:28 PM
This applies to IIS5.1 only -
http://msmvps.com/blogs/bernard/archive/2005/12/20/79489.aspx

--
Regards,
Bernard Cheah
http://www.iis-resources.com/
http://www.iiswebcastseries.com/
http://msmvps.com/blogs/bernard/


[quoted text, click to view]

AddThis Social Bookmark Button