IIS5 File-Fragment Reading via Malformed HTR Request Vulnerability Patch (MS01-004)
IIS5 File-Fragment Reading via Malformed HTR Request Vulnerability Patch (MS01-004) Ranking & Summary
IIS5 File-Fragment Reading via Malformed HTR Request Vulnerability Patch (MS01-004) description
IIS5 File-Fragment Reading via Malformed HTR Request Vulnerability Patch (MS01-004) is launched as a helpful and important patch which includes new variant of the 'File Fragment Reading via .HTR' vulnerability, previous variants of which were discussed in Microsoft Security Bulletins MS00-031 and MS00-044. Like the original variants, this one could enable an attacker to request a file in a way that would cause it to be processed by the HTR ISAPI extension. The result of doing this is that fragments of server-side files, such as ASP files, could potentially be sent to the attacker.
Customers who have previously disabled the HTR functionality would not be affected by this vulnerability. Microsoft recommends that all customers who haven't already disabled HTR do so, unless there is a business-critical reason for keeping it. For the latter group of customers, this patch will eliminate this vulnerability.
IIS5 File-Fragment Reading via Malformed HTR Request Vulnerability Patch (MS01-004) Screenshot
IIS5 File-Fragment Reading via Malformed HTR Request Vulnerability Patch (MS01-004) Keywords
Bookmark IIS5 File-Fragment Reading via Malformed HTR Request Vulnerability Patch (MS01-004)
IIS5 File-Fragment Reading via Malformed HTR Request Vulnerability Patch (MS01-004) Copyright
Want to place your software product here?
Please contact us for consideration.
Contact WareSeeker.com
- LinkDeny 2.0
- Microsoft Word 2000 Patch: Malformed Conversion Da Update
- Microsoft Word 97 and 98 Patch: Malformed Conversi Update
- Microsoft Security Bulletin (MS00-082) 2.0
- Microsoft SQL Server 2000 Patch: Malformed RPC Req
- Microsoft Windows 98 Patch: Malformed RTF Control
- Microsoft Virtual Machine Patch: File Reading Vuln
- Microsoft Internet Explorer 5.5 SP1 Security Patch
- Microsoft Excel 2002 for Windows Macro Modification Security Vulnerability Patch MS01-050
- Windows Media Player 7 Skins File Download Vulnerability Patch 38041 (2/12/01)
- RDACD (Read Digital Audio from CD) 99.07.29
- Microsoft SQL Server Malformed TDS Packet Header Vulnerability patch 1
- Microsoft Site Server 3.0 Site Wizard Input Validation Vulnerability patch 1
- Microsoft Systems Management Server 2.0 Remote Agent Permissions Vulnerability Patch 1
- Microsoft Clip Art Buffer Overrun Vulnerability Patch 1
- Microsoft IIS 4.0 Chunked Encoding Post Vulnerability patch MS00-018
- Internet Explorer 5.5 Scriptlet Rendering Vulnerability Patch
- Remote Media Screen Saver V1.0
- Windows XP Help and Support Center Vulnerability Patch MS02-060
- Internet Explorer 5.01 Certificate Spoofing Vulnerability Patch MS01-027 (5/16/01)
- Windows 2000 Network DDE Vulnerability Patch MS01-007 (2/9/01)
- Personal Web Server File Access Vulnerability Patch (FrontPage 98)
- Internet Explorer 5.5 Certificate Spoofing Vulnerability Patch MS01-027 (5/24/01)
- Windows 2000 IrDA Driver Access Violation Patch MS01-046