Description
Stack consumption vulnerability in the FTP Service in Microsoft Internet Information Services (IIS) 5.0 through 7.0 allows remote authenticated users to cause a denial of service (daemon crash) via a list (ls) -R command containing a wildcard that references a subdirectory, followed by a .. (dot dot), aka "IIS FTP Service DoS Vulnerability."
Remediation
References
Related Vulnerabilities
Undertow CVE-2022-4492 Vulnerability (CVE-2022-4492)
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-6024)
Oracle Database Server CVE-2015-0371 Vulnerability (CVE-2015-0371)
Apache Tomcat Numeric Errors Vulnerability (CVE-2012-0022)
WordPress Plugin LearnDash LMS Multiple Information Disclosure Vulnerabilities (4.10.2)