CVE-2001-0500
Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier allows remote attackers to execute arbitrary commands via a long argument to Internet Data Administration (.ida) and Internet Data…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 96.7%, higher than 100% of all known CVEs. Patch or mitigate before the next change window.
Description
Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier allows remote attackers to execute arbitrary commands via a long argument to Internet Data Administration (.ida) and Internet Data Query (.idq) files such as default.ida, as commonly exploited by Code Red.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 96.67% probability · 100th percentile
- CISA KEV
- Not listed
- Affected
- microsoft/index server · microsoft/indexing service · microsoft/internet information server
- Source
- cve@mitre.org
References
- http://www.cert.org/advisories/CA-2001-13.htmlExploit, Patch, Third Party Advisory, US Government Resource
- http://www.ciac.org/ciac/bulletins/l-098.shtml
- http://www.iss.net/security_center/static/6705.php
- http://www.securityfocus.com/archive/1/191873
- http://www.securityfocus.com/bid/2880
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-033
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A197
- http://www.cert.org/advisories/CA-2001-13.htmlExploit, Patch, Third Party Advisory, US Government Resource
- http://www.ciac.org/ciac/bulletins/l-098.shtml
- http://www.iss.net/security_center/static/6705.php
- http://www.securityfocus.com/archive/1/191873
- http://www.securityfocus.com/bid/2880
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-033
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A197
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.