First published: Tue Jan 26 1999(Updated: )
The ExAir sample site in IIS 4 allows remote attackers to cause a denial of service (CPU consumption) via a direct request to the (1) advsearch.asp, (2) query.asp, or (3) search.asp scripts.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Internet Information Server | =4.0 | |
=4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0449 has a moderate severity rating due to its ability to cause denial of service through high CPU consumption.
To fix CVE-1999-0449, it is recommended to apply the latest patches and updates to Microsoft Internet Information Server 4.0.
CVE-1999-0449 involves denial of service through the advsearch.asp, query.asp, and search.asp scripts.
CVE-1999-0449 affects users and administrators of Microsoft Internet Information Server version 4.0.
CVE-1999-0449 is categorized as a denial of service vulnerability.