HIGH · 7.2

CVE-2004-0205

Buffer overflow in Microsoft Internet Information Server (IIS) 4.0 allows local users to execute arbitrary code via the redirect function.

Vulnerability Description

Buffer overflow in Microsoft Internet Information Server (IIS) 4.0 allows local users to execute arbitrary code via the redirect function.

CVSS Score

7.2

HIGH

AV:L/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
AvayaIp600 Media ServersAll versions
MicrosoftInternet Information Server4.0
AvayaDefinity One Media ServerAll versions
AvayaS8100All versions
AvayaModular Messaging Message Storage Servers3400

References

FAQ

What is CVE-2004-0205?

CVE-2004-0205 is a vulnerability with a CVSS score of 7.2 (HIGH). Buffer overflow in Microsoft Internet Information Server (IIS) 4.0 allows local users to execute arbitrary code via the redirect function.

How severe is CVE-2004-0205?

CVE-2004-0205 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2004-0205?

Check the references section above for vendor advisories and patch information. Affected products include: Avaya Ip600 Media Servers, Microsoft Internet Information Server, Avaya Definity One Media Server, Avaya S8100, Avaya Modular Messaging Message Storage Server.