CVE-2001-0146: Medium severity Microsoft Internet Information Services vulnerability
Published Mar 9, 2001
·Updated
IIS 5.0 and Microsoft Exchange 2000 allow remote attackers to cause a denial of service (memory allocation error) by repeatedly sending a series of specially formatted URL's.
Affected Software
2 affected components
Microsoft Internet Information Services=5.0
Microsoft Exchange Server=2000
Remediation
Event History
Mar 9, 2001
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0146?
CVE-2001-0146 has a severity rating associated with a denial of service vulnerability that can impact system availability.
2
How do I fix CVE-2001-0146?
To mitigate CVE-2001-0146, users should apply patches provided by Microsoft for Internet Information Services 5.0 and Exchange 2000.
3
What systems are affected by CVE-2001-0146?
CVE-2001-0146 affects Microsoft Internet Information Services 5.0 and Microsoft Exchange Server 2000.
4
What type of attack does CVE-2001-0146 facilitate?
CVE-2001-0146 facilitates a denial of service attack through memory allocation errors caused by specially formatted URLs.
5
Can CVE-2001-0146 be exploited remotely?
Yes, CVE-2001-0146 can be exploited remotely by attackers who send the specially formatted URLs.