Intelligence View
⚡ tsecurity.de Intelligence
CVE-1999-0867 | Microsoft IIS 4.0 HTTP Request Malformed Header input validation (MS99-029 / EDB-19457)
A vulnerability, which was classified as problematic, was found in Microsoft IIS 4.0. Affected is an unknown function of the component HTTP Request Handler.…
A vulnerability, which was classified as problematic, was found in Microsoft IIS 4.0. Affected is an unknown function of the component HTTP Request Handler. The manipulation as part of Malformed Header leads to improper input validation.
This vulnerability is traded as CVE-1999-0867. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
This vulnerability is traded as CVE-1999-0867. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
Cyber Threat Intelligence & Forensik
Bedrohungsgraph · ATT&CK-Mapping · Exploit-Belege
IoC Intelligence
1 Indikatoren · Defanged · STIX 2.1
CVE-1999-0867
CTI Threat Relationship Graph
Akteure · Techniken · Beziehungen
CVE / Incident Threat Actor Software MITRE ATT&CK CWE Weakness IoC
Exploit & Remediation Lifecycle
PoC · Ausnutzung · Patch-Stufen
Entdeckung & Meldung
Schwachstelle identifiziert & registriert
Sicherheits-Advisory
Offizielle Warnung & CVE-Zuweisung
Exploit / PoC
Öffentlicher Nachweis/Code verfügbar (Exploit-DB/EUVD)
In-the-Wild Ausnutzung
Keine Massenausnutzung gemeldet
Patch & Schutzmaßnahmen
Upstream-Patch-Referenz vorhanden (Commit-/Advisory-Link)
Exploit Weaponization & PoC Radar
Nur belegte Faktoren · kein Score-Theater
Exploit-DB
EDB-19457Interaktion
Interaktion nötigAuthentifizierung
ErforderlichCompliance, SLA & Vendor Adherence
Advisory-Prüfung · Score-Einordnung · Fristen
Advisory Radar
Offizielles Hersteller-Update verfügbar
Hersteller-Sicherheitsmeldungen & Patch-Status
Handlungsempfehlung für Administratoren
Hersteller hat ein verifiziertes Patch-Release herausgegeben. Sofortiges Rollout auf Test- und Produktivsystemen empfohlen.
Referenzen aus der Primärquelle („Verifiziert" nur bei Hersteller-Domäne):
-
Microsoft MSRC Advisory Verifiziertmicrosoft.com
-
Web Referencewww.ciac.org
-
Microsoft MSRC Advisory Verifiziertmicrosoft.com
-
Web Referencewww.securityfocus.com