vendor:
Internet Information Services (IIS)
by:
dark spyrit
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Internet Information Services (IIS)
Affected Version From: IIS 5
Affected Version To: IIS 5
Patch Exists: NO
Related CWE: Unknown
CPE: a:microsoft:iis:5.0
Platforms Tested:
Unknown
IIS 5 remote .printer overflow
This exploit overwrites an exception frame to control eip and get to our code. The code then locates the pointer to our larger buffer and execs.
Mitigation:
Apply the latest security patches and updates.