CVE-1999-0861
CVSS 2.0 Score 2.6 of 10 (low)
Details
Summary
CVE-1999-0861 is a race condition vulnerability affecting the SSL ISAPI filter in Internet Information Services (IIS) and other servers. This issue permits an attacker to potentially leak sensitive information in plaintext through manipulation of SSL handshakes. An unauthenticated attacker could exploit this vulnerability by sending specially crafted requests to the server, leading to the disclosure of data that should have been encrypted. This vulnerability has been resolved in later versions of IIS and other affected software, and it is recommended that all affected systems be updated promptly to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft IIS
Affected Vendors
- Microsoft