Lucene search

K
nvd[email protected]NVD:CVE-1999-1011
HistoryJul 19, 1999 - 4:00 a.m.

CVE-1999-1011

1999-07-1904:00:00
CWE-264
web.nvd.nist.gov
4

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.683

Percentile

98.0%

The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x exposes unsafe methods, which allows remote attackers to execute arbitrary commands.

Affected configurations

Nvd
Node
microsoftdata_access_componentsMatch1.5
OR
microsoftdata_access_componentsMatch2.0
OR
microsoftdata_access_componentsMatch2.1
OR
microsoftindex_serverMatch2.0
OR
microsoftinternet_information_serverMatch3.0
OR
microsoftinternet_information_serverMatch4.0
OR
microsoftsite_serverMatch3.0
VendorProductVersionCPE
microsoftdata_access_components1.5cpe:2.3:a:microsoft:data_access_components:1.5:*:*:*:*:*:*:*
microsoftdata_access_components2.0cpe:2.3:a:microsoft:data_access_components:2.0:*:*:*:*:*:*:*
microsoftdata_access_components2.1cpe:2.3:a:microsoft:data_access_components:2.1:*:*:*:*:*:*:*
microsoftindex_server2.0cpe:2.3:a:microsoft:index_server:2.0:*:*:*:*:*:*:*
microsoftinternet_information_server3.0cpe:2.3:a:microsoft:internet_information_server:3.0:*:*:*:*:*:*:*
microsoftinternet_information_server4.0cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*
microsoftsite_server3.0cpe:2.3:a:microsoft:site_server:3.0:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.683

Percentile

98.0%