TROYANOSYVIRUS
Back to CVEs

CVE-2009-3023

N/A

Description

Buffer overflow in the FTP Service in Microsoft Internet Information Services (IIS) 5.0 through 6.0 allows remote authenticated users to execute arbitrary code via a crafted NLST (NAME LIST) command that uses wildcards, leading to memory corruption, aka "IIS FTP Service RCE and DoS Vulnerability."

CVE Details

CVSS v3.1 ScoreN/A
Published8/31/2009
Last Modified4/23/2026
Sourcenvd
Honeypot Sightings0

Affected Products

microsoft:internet_information_servermicrosoft:windows_2000microsoft:windows_server_2003microsoft:windows_server_2008microsoft:windows_vistamicrosoft:windows_xp

Weaknesses (CWE)

CWE-120

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.