CVE-2001-0902

Microsoft IIS 5.0 allows remote attackers to spoof web log entries via an HTTP request that includes hex-encoded newline or form-feed characters.

Scoring

CVSS base score
2.06
EPSS probability
41.28%
Published
2004-09-01
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs