cve/2008/CVE-2008-4300.md
2024-06-18 02:51:15 +02:00

775 B

CVE-2008-4300

Description

A certain ActiveX control in adsiis.dll in Microsoft Internet Information Services (IIS) allows remote attackers to cause a denial of service (browser crash) via a long string in the second argument to the GetObject method. NOTE: this issue was disclosed by an unreliable researcher, so it might be incorrect.

POC

Reference

Github

No PoCs found on GitHub currently.