Microsoft IIS FTP Server 'ls' Command DOS Vulnerability

Summary
The host is running Microsoft IIS with FTP server and is prone to Denial of Service vulnerability.
Impact
Successful exploitation will allows remote authenticated users to crash the application leading to denial of service condition. Impact Level: Application
Solution
Upgrade to IIS version 7.5 http://www.iis.net/
Insight
A stack consumption error occurs in the FTP server while processing crafted LIST command containing a wildcard that references a subdirectory followed by a .. (dot dot).
Affected
Microsoft Internet Information Services version 5.0 and 6.0
References