Oval Definition:oval:org.mitre.oval:def:4767
Revision Date:2011-05-16Version:18
Title:Windows Server 2003 IIS WebDAV Message Handler Denial of Service Vulnerability
Description:The WebDAV Message Handler for Internet Information Services (IIS) 5.0, 5.1, and 6.0 allows remote attackers to cause a denial of service (memory and CPU exhaustion, application crash) via a PROPFIND request with an XML message containing XML elements with a large number of attributes.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2003-0718
Platform(s):Microsoft Windows Server 2003
Product(s):Microsoft Internet Information Server (IIS)
Definition Synopsis
  • Windows Server 2003 is installed
  • AND NOT Win2K/XP/2003 is patched
  • AND the version of httpext.dll is less than 6.0.3790.212
  • AND the patch KB824151 is installed
  • BACK