CVE-2006-7027
Microsoft Internet Security and Acceleration (ISA) Server 2004 logs unusual ASCII characters in the Host header, including the tab, which allows remote attackers to manipulate portions of the log file and possibly leverage this for other attacks.
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 14.6%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
Microsoft Internet Security and Acceleration (ISA) Server 2004 logs unusual ASCII characters in the Host header, including the tab, which allows remote attackers to manipulate portions of the log file and possibly leverage this for other attacks.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 14.57% probability · 96th percentile
- CISA KEV
- Not listed
- Affected
- microsoft/isa server
- Source
- cve@mitre.org
References
- http://www.securityfocus.com/archive/1/432947/30/5190/threaded
- http://www.securityfocus.com/archive/1/433074/30/5190/threaded
- http://www.securityfocus.com/archive/1/433141/30/5160/threaded
- http://www.securityfocus.com/archive/1/433350/30/5100/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26233
- http://www.securityfocus.com/archive/1/432947/30/5190/threaded
- http://www.securityfocus.com/archive/1/433074/30/5190/threaded
- http://www.securityfocus.com/archive/1/433141/30/5160/threaded
- http://www.securityfocus.com/archive/1/433350/30/5100/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26233
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.