CVE Database
/

CVE-2001-0902

Back to search

CVE-2001-0902

Published: Sep 1, 2004

Modified: Aug 8, 2024

PUBLISHED

Description

Microsoft IIS 5.0 allows remote attackers to spoof web log entries via an HTTP request that includes hex-encoded newline or form-feed characters.

VendorProductVersions

n/a

n/a

affected
n/a

References

6795
vdb-entry
x_refsource_BID
20011120 IIS logging issue
mailing-list
x_refsource_BUGTRAQ
20011120 IIS logging issue
mailing-list
x_refsource_NTBUGTRAQ
iis-fake-log-entry(7613)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now