CVE-1999-0861

CVSS 2.0 Score 2.6 of 10 (low)

Details

Published Aug 11, 1999
Updated: Nov 7, 2023
CWE ID 362

Summary

CVE-1999-0861 is a race condition vulnerability affecting the SSL ISAPI filter in Internet Information Services (IIS) and other servers. This issue permits an attacker to potentially leak sensitive information in plaintext through manipulation of SSL handshakes. An unauthenticated attacker could exploit this vulnerability by sending specially crafted requests to the server, leading to the disclosure of data that should have been encrypted. This vulnerability has been resolved in later versions of IIS and other affected software, and it is recommended that all affected systems be updated promptly to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share