RULE(RULE ID:321843)

Rule General Information
Release Date: 2019-06-14
Rule Name: Microsoft IIS WebDav 'ScStoragePathFromUrl' Buffer Overflow Vulnerability (CVE-2017-7269)
Severity:
CVE ID:
Rule Protection Details
Description: Buffer overflow in the ScStoragePathFromUrl function in the WebDAV service in Internet Information Services (IIS) 6.0 in Microsoft Windows Server 2003 R2 allows remote attackers to execute arbitrary code via a long header beginning with "If:
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: SecurityFocusBID:97127
https://support.microsoft.com/en-us/help/3197835/description-of-the-security-update-for-windows-xp-and-windows-server
ExploitDB:41992
SecurityTrackerID:1038168
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://support.microsoft.com/en-us/help/3197835/description-of-the-security-update-for-windows-xp-and-windows-server