First published: Tue Oct 30 2001(Updated: )
IIS 4.0 with URL redirection enabled allows remote attackers to cause a denial of service (crash) via a malformed request that specifies a length that is different than the actual length.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Internet Information Services | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0545 is classified as a denial-of-service vulnerability that can lead to a crash of the IIS 4.0 web server.
To mitigate the effects of CVE-2001-0545, consider disabling URL redirection on IIS 4.0.
CVE-2001-0545 specifically affects Microsoft Internet Information Server version 4.0.
Yes, CVE-2001-0545 can be exploited remotely by sending a malformed request to the server.
The primary attack type using CVE-2001-0545 is a denial-of-service attack that causes the server to crash.