CVE Database
/

CVE-2005-4360

Back to search

CVE-2005-4360

Published: Dec 20, 2005

Modified: Aug 7, 2024

PUBLISHED

Description

The URL parser in Microsoft Internet Information Services (IIS) 5.1 on Windows XP Professional SP2 allows remote attackers to execute arbitrary code via multiple requests to ".dll" followed by arguments such as "~0" through "~9", which causes ntdll.dll to produce a return value that is not correctly handled by IIS, as demonstrated using "/_vti_bin/.dll/*/~0". NOTE: the consequence was originally believed to be only a denial of service (application crash and reboot).

VendorProductVersions

n/a

n/a

affected
n/a

References

SSRT071446
vendor-advisory
x_refsource_HP
oval:org.mitre.oval:def:1703
vdb-entry
signature
x_refsource_OVAL
271
third-party-advisory
x_refsource_SREASON
1015376
vdb-entry
x_refsource_SECTRACK
21805
vdb-entry
x_refsource_OSVDB
ADV-2005-2963
vdb-entry
x_refsource_VUPEN
MS07-041
vendor-advisory
x_refsource_MS
15921
vdb-entry
x_refsource_BID
TA07-191A
third-party-advisory
x_refsource_CERT
18106
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now