Sploitus

CVE-2000-0886

1 known exploit for CVE-2000-0886

IIS 5.0 allows remote attackers to execute arbitrary commands via a malformed request for an executable file whose name is appended with operating system commands, aka the "Web Server File Request Parsing" vulnerability.

Affected products
Iis
Microsoft Internet Information Server
= 4.0
Microsoft Internet Information Services
= 5.0
Fix
Available
CVSS 2.0
7.5 HIGH
EPSS
68.7% (99th percentile)
NVD status
Modified
Published
2001-01-22
CVE-2000-0886 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2000-0886

Proof-of-concept code and exploit modules indexed by Sploitus