Unrated severityNVD Advisory· Published Jun 16, 1999· Updated Apr 16, 2026
CVE-1999-0874
CVE-1999-0874
Description
Buffer overflow in IIS 4.0 allows remote attackers to cause a denial of service via a malformed request for files with .HTR, .IDC, or .STM extensions.
Affected products
4- cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:microsoft:windows_nt:*:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.