CVE-2002-0073: Medium severity Microsoft Internet Information Services vulnerability
Published Apr 22, 2002
·Updated
The FTP service in Internet Information Server (IIS) 4.0, 5.0 and 5.1 allows attackers who have established an FTP session to cause a denial of service via a specially crafted status request containing glob characters.
Affected Software
2 affected components
Microsoft Internet Information Services=5.0
Microsoft Internet Information Server=4.0
Event History
Apr 22, 2002
CVE Published
04:00 AM
Apr 2, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-0073?
The severity of CVE-2002-0073 is classified as a denial of service vulnerability.
2
How do I fix CVE-2002-0073?
To fix CVE-2002-0073, it is recommended to apply the latest security patches provided by Microsoft for IIS 4.0, 5.0, and 5.1.
3
What versions of IIS are affected by CVE-2002-0073?
CVE-2002-0073 affects Microsoft Internet Information Server versions 4.0, 5.0, and 5.1.
4
Can CVE-2002-0073 be exploited remotely?
Yes, CVE-2002-0073 can be exploited remotely by attackers who have established an FTP session.
5
What are the consequences of CVE-2002-0073?
The consequences of CVE-2002-0073 include a denial of service condition that can disrupt FTP services.