Buffer overflow in the ScStoragePathFromUrl function in the WebDAV service in Internet Information Services (IIS) 6.0 in Microsoft Windows Server 2003 R2 allows remote attackers to execute arbitrary code via a long header beginning with "If: <http://" in a PROPFIND request, as exploited in the wild in July or August 2016.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HMicrosoft Internet Information Services
APPMicrosoft6.0Microsoft Windows Server 2003
OSMicrosoftr2
CISA KEV — detailsi
- Vendori
- Microsoft ↗
- Producti
- Internet Information Services (IIS)
- Added to KEVi
- November 3, 2021
- Remediation deadline (US Federal)i
- May 3, 2022(overdue)
Apply updates per vendor instructions.
Microsoft Windows Server 2003 R2 contains a buffer overflow vulnerability in Internet Information Services (IIS) 6.0 which allows remote attackers to execute code via a long header beginning with "If: <http://" in a PROPFIND request.
Related vulnerabilities
Use-after-free w Microsoft Internet Explorer 6–11 umożliwia RCE
Apache Struts 2: RCE przez prefiks action/redirect w parametrach
RCE w usłudze Server systemu Windows przez przepełnienie bufora w RPC
RCE w Microsoft MDAC/WDAC — heap buffer overflow przez dane XML
RCE w kliencie DNS Windows — podatność w przetwarzaniu zapytań DNS (DNSAPI.dll)