'; } else{ echo ''; } echo '
|
|
|||
Release Date:2025/9/15
Rule Name:CVE-2017-7269: WEB Microsoft IIS WebDAV Service Buffer Overflow Vulnerability
Severity:critical
CVE ID:CVE-2017-7269
| Descripiton:
|
Microsoft Windows Server 2003 R2 is a server operating system released by Microsoft (Microsoft). Internet Information Services (IIS) is a set of basic Internet services running on Microsoft Windows. A buffer overflow vulnerability exists in the 'ScStoragePathFromUrl' function of the WebDAV service in IIS 6.0 version in Microsoft Windows Server 2003 R2. A remote attacker could exploit this vulnerability to execute arbitrary code by sending a specially crafted PROPFIND request. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021.
Other reference:None
| Solution:
|
Update vendor patches.