Download TrojanHunter Now
Free 30-day trial!
Latest TrojanHunter Version:
TrojanHunter 5.0
Order Now
License file delivered within minutes.
Welcome, Guest. Please Login or Register.
Jul 4th, 2008, 2:44pm
   Mischel Internet Security Forum
   Internet Security
   News
(Moderators: Helena, Gavin_Coe, Magnus)
   IIS Buffer Overflow Vulnerability
« Previous topic | Next topic »
Pages: 1  Reply Reply  Notify of replies Notify of replies   Send Topic Send Topic   Print Print
   Author  Topic: IIS Buffer Overflow Vulnerability  (Read 666 times)
Magnus
Administrator
*****



Ad astra per aspera.

   
WWW  

Posts: 4082
IIS Buffer Overflow Vulnerability
« on: Apr 11th, 2002, 3:37pm »
Quote Quote  Modify Modify

This is from eEye's advisory which was posted on Bugtraq:
 
Quote:

Windows 2000 and NT4 IIS .ASP Remote Buffer Overflow
 
Release Date:
00/00/2002
 
Severity:
High (Remote code execution)
IWAM_MACHINE Privilege Level
 
 
Systems Affected:
Microsoft Windows NT 4.0 Internet Information Services 4.0
Microsoft Windows 2000 Internet Information Services 5.0
 
 
Description:
 
 
A vulnerability in the ASP (Active Server Pages) ISAPI filter, loaded by
default on all NT4 and Windows 2000 server systems (running IIS), can be
exploited to remotely execute code of an attackers choice. The fault lies
within the decoding and interpretation of form data received by malicious
clients. By chunk encoding form data we can force IIS to overwrite 4 bytes
of arbitrary memory with data we supply.
 
 
This is a very serious vulnerability and eEye suggests that administrators
install the Microsoft supplied patch as soon as possible.

 
Microsoft has released a security bulletin and patch:
http://www.microsoft.com/technet/security/bulletin/MS02-018.asp
IP Logged
Pages: 1  Reply Reply  Notify of replies Notify of replies   Send Topic Send Topic   Print Print

« Previous topic | Next topic »
Search
Members
Login
Register