- Quick specs
- Price: Update
- Operating system: Windows 98/2000/XP
- Date added: November 05, 2000
- Total Downloads: 47
- Downloads last week: 1
- See full specifications
- Average user rating: Be the first to rate this product!
Publisher's description
From Microsoft :This update resolves the "Web Server File Request Parsing" security vulnerability in Internet Information Services (IIS) 5.0 and is discussed in Microsoft Security Bulletin MS00-086. Download now to prevent a malicious user from modifying Web pages, adding, changing, or deleting files by sending malformed file requests.
When a Web server that is running IIS receives a request for a file, it passes the name of the file to the operating system for processing. If a malicious user combines a request for a .cmd or .bat file with operating system commands in a particular way, IIS improperly passes both the file request and the commands to the operating system. This could allow the malicious user to run commands directly on the Web server.
More popular File Server Software downloads
- 574 downloads 1. Azureus Installer
- 542 downloads 2. WampServer
- 306 downloads 3. Nofeel FTP Server (32-bit)
- 262 downloads 4. Exceed
- 201 downloads 5. Windows Server 2003
- See all File Server Software downloads
User reviews
Write your own review Be the first one to review Microsoft Internet Information Server 5.0 Patch: Web Server File Request Parsing Update and share your experience with the CNET community!
Submit your review
- See more CNET content tagged:
- Microsoft Corp.,
- Web server,
- malicious user,
- operating system,
- request
