First published: Fri May 30 2003(Updated: )
Microsoft Internet Information Services (IIS) 5.0 and 5.1 allows remote attackers to cause a denial of service via a long WebDAV request with a (1) PROPFIND or (2) SEARCH method, which generates an error condition that is not properly handled.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Internet Information Services (IIS) | =5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0226 is classified as a denial of service vulnerability that can significantly impact the availability of affected systems.
To mitigate CVE-2003-0226, it is recommended to upgrade to a supported version of Microsoft Internet Information Services or implement firewall rules to block malicious WebDAV requests.
CVE-2003-0226 specifically affects Microsoft Internet Information Services 5.0 and 5.1.
Yes, CVE-2003-0226 can be exploited remotely by attackers who send specially crafted WebDAV requests.
The exploitation of CVE-2003-0226 can lead to a denial of service, rendering the web server unresponsive to legitimate requests.