Security Advisory

CVE-2019-0941

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-06-12 13:49:38
Last updated 2025-05-20 17:49:32
Assigner microsoft
State PUBLISHED

Description

A denial of service exists in Microsoft IIS Server when the optional request filtering feature improperly handles requests. An attacker who successfully exploited this vulnerability could perform a temporary denial of service against pages configured to use request filtering. To exploit this vulnerability, an attacker could send a specially crafted request to a page utilizing request filtering. The update addresses the vulnerability by changing the way certain requests are processed by the filter.