CVE-2002-1908

Microsoft IIS 5.0 and 5.1 allows remote attackers to cause a denial of service (CPU consumption) via an HTTP request with a Host header that contains a large number of "/" (forward slash) characters.

Scoring

CVSS base score
0.46
EPSS probability
11.49%
Published
2005-06-28
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs