CVE-2001-0334: High severity Microsoft Internet Information Server vulnerability
Published Jun 27, 2001
·Updated
FTP service in IIS 5.0 and earlier allows remote attackers to cause a denial of service via a wildcard sequence that generates a long string when it is expanded.
Affected Software
1 affected component
Microsoft Internet Information Server<=5.0
Remediation
Event History
Jun 27, 2001
CVE Published
04:00 AM
Sep 18, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0334?
CVE-2001-0334 is classified as a denial of service vulnerability.
2
How does CVE-2001-0334 affect IIS 5.0?
CVE-2001-0334 allows remote attackers to exploit the FTP service in IIS 5.0, causing a denial of service.
3
What versions of IIS are affected by CVE-2001-0334?
CVE-2001-0334 affects Microsoft Internet Information Server versions up to and including 5.0.
4
How can I mitigate the risks associated with CVE-2001-0334?
To mitigate CVE-2001-0334, consider disabling the FTP service in IIS 5.0 or applying appropriate patches.
5
Is there a patch available for CVE-2001-0334?
Yes, a security bulletin provided by Microsoft includes patches to address CVE-2001-0334.