Description
The ASP function Response.AddHeader in Microsoft Internet Information Server (IIS) 4.0 and 5.0 does not limit memory requests when constructing headers, which allow remote attackers to generate a large header to cause a denial of service (memory consumption) with an ASP page.
Remediation
References
Related Vulnerabilities
WordPress Plugin Similar Posts-Best Related Posts for WordPress Remote Code Execution (3.1.5)
Oracle Database Server Improper Authentication Vulnerability (CVE-2012-3137)
WordPress 4.1.x Multiple Vulnerabilities (4.1 - 4.1.30)
MongoDb Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-4650)