漏洞类别:Web server漏洞等级:
漏洞信息
Requesting a malformed URL containing numerous escaped characters will cause Microsoft IIS performance to dramatically decrease until the URL has been processed.
漏洞危害
Note: To avoid causing a denial of service on your server, we don't perform active tests for this vulnerability. Therefore, if you've already applied the appropriate patches, you can safely ignore this warning. (For information on patches, see the Solution field below.)
By sending multiple requests with a malformed URL (as described in the Description field), responsiveness of your Web server, and eventually other services on it, may decrease significantly.
解决方案
Patch:
Following are links for downloading patches to fix the vulnerabilities:
0day
文章评论