First published: Tue Dec 31 2002(Updated: )
cphost.dll in Microsoft Site Server 3.0 allows remote attackers to cause a denial of service (disk consumption) via an HTTP POST of a file with a long TargetURL parameter, which causes Site Server to abort and leaves the uploaded file in c:\temp.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Site Server | =3.0-sp2 | |
Microsoft Site Server | =3.0-sp2_alpha | |
Microsoft Site Server Commerce | =3.0-sp3_alpha | |
Microsoft Site Server | =3.0-sp3_alpha | |
Microsoft Site Server | =3.0-sp1_alpha | |
Microsoft Site Server | =3.0 | |
Microsoft Site Server Commerce | =3.0-sp1_alpha | |
Microsoft Site Server | =3.0-apha | |
Microsoft Site Server | =3.0-sp4 | |
Microsoft Site Server | =3.0-sp1 | |
Microsoft Site Server | =3.0-sp4_alpha | |
Microsoft Site Server Commerce | =3.0-sp4_alpha | |
Microsoft Site Server Commerce | =3.0-alpha | |
Microsoft Site Server | =3.0-sp3 | |
Microsoft Site Server Commerce | =3.0-sp2_alpha | |
Microsoft Site Server Commerce | =3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.