CVE-2002-1182 describes a denial-of-service vulnerability affecting Microsoft IIS 5.0 and 5.1. Remote attackers can crash the server by sending malformed WebDAV requests that lead to excessive memory allocation. This vulnerability has a CVSS score of 5.0, indicating a medium severity, with a low attack complexity and no authentication required for exploitation, resulting in a partial availability impact. Despite its age and lack of public exploit code or KEV listing, it has a high FAUCET Risk Score and significant community discussion, suggesting ongoing awareness or interest.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
5.0CPE matchmatch criteria | cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.