peter bassill · operator
$ cve CVE-2005-4360 JSON

CVE-2005-4360 EXPLOIT

7.8
HIGH · CVSS 2.0 · EPSS 86.7% (pctl 100)

Patch early

A public exploit exists.

Description

The URL parser in Microsoft Internet Information Services (IIS) 5.1 on Windows XP Professional SP2 allows remote attackers to execute arbitrary code via multiple requests to ".dll" followed by arguments such as "~0" through "~9", which causes ntdll.dll to produce a return value that is not correctly handled by IIS, as demonstrated using "/_vti_bin/.dll/*/~0". NOTE: the consequence was originally believed to be only a denial of service (application crash and reboot).

Scoring

CVSS7.8 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:N/I:C/A:N
EPSS86.73% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-252
On CISA KEVno
Public exploityes
Published2005-12-20
Last modified2026-06-16

Affected (2)

VendorProduct
microsoftinternet information services
microsoftwindows xp

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD