CVE

Id
7053  
CVE No.
CVE-2003-0225  
Status
Candidate  
Description
The ASP function Response.AddHeader in Microsoft Internet Information Server (IIS) 4.0 and 5.0 does not limit memory requests when constructing headers, which allow remote attackers to generate a large header to cause a denial of service (memory consumption) with an ASP page.  
Phase
Assigned (20030430)  
Votes
None (candidate not yet proposed)  
Comments