Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Microsoft MS01-014 and MS01-016 patches for IIS 5.0 and earlier introduce a memory leak which allows attackers to cause a denial of service via a series of requests.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft IIS WebDav Lock命令的内存泄漏导致拒绝服务攻击漏洞
Vulnerability Description
IIS 5.0是微软的一个产品,随Windows 2000捆绑发售。IIS默认支持Webdev。 IIS 5.0中的WebDAV扩展中Lock方法的实现存在一个内存泄漏的缺陷,使得恶意用户可以耗尽服务器的所有可用内存。 如果连续请求一个不存在的文件,则会引发Lock方法中的内存泄漏。例如: LOCK /aaaaaaaaaaaaaaaaaaaaaaaaaa.htw HTTP/1.0 服务器最终将耗尽内存,运行缓慢以至崩溃、重启并恢复正常。但是可以通过一些方法来确定服务器内存何时即将被耗尽,从而在内存耗尽之前
CVSS Information
N/A
Vulnerability Type
N/A