CVE-2017-7269

Microsoft Windows Server Buffer Overflow Vulnerability

9.8
CVSS 3.1
99.8 %
EPSS (current)
2021-11-03
KEV addition
No
Ransomware

Timeline

Publication, first public exploit and KEV addition on a day axis.

Key facts

Vendor / product: Microsoft / Internet Information Services (IIS)

Published: 2017-03-27 · Due (CISA): 2022-05-03

CWE: CWE-120 · EU list: no

Exploit references (metadata only)

SourceReferenceTitleDate
nucleihttp/cves/2017/CVE-2017-7269.yamlWindows Server 2003 & IIS 6.0 - Remote Code Execution–
metasploitexploit/windows/iis/iis_webdav_scstoragepathfromurlexploit/windows/iis/iis_webdav_scstoragepathfromurl2017-03-26
exploitdb41738Microsoft IIS 6.0 - WebDAV 'ScStoragePathFromUrl' Remote Buffer Overflow2017-03-27
exploitdb41992Microsoft IIS - WebDav 'ScStoragePathFromUrl' Remote Overflow (Metasploit)2017-05-11

References only — no downloads or instructions.

Sources