Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2017-7269

KEV EPSS 94.41% · P100
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2017-7269

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Buffer overflow in the ScStoragePathFromUrl function in the WebDAV service in Internet Information Services (IIS) 6.0 in Microsoft Windows Server 2003 R2 allows remote attackers to execute arbitrary code via a long header beginning with "If: <http://" in a PROPFIND request, as exploited in the wild in July or August 2016.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Microsoft Internet Information Services 缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Microsoft Windows Server 2003 R2是美国微软(Microsoft)公司发布的一套服务器操作系统。Internet Information Services(IIS)是一套运行于Microsoft Windows中的互联网基本服务。 Microsoft Windows Server 2003 R2中的IIS 6.0版本中的WebDAV服务的‘ScStoragePathFromUrl’函数存在缓冲区溢出漏洞。远程攻击者可通过发送特制的PROPFIND请求利用该漏洞执行任意代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2017-7269

#POC DescriptionSource LinkShenlong Link
1An exploit for Microsoft IIS 6.0 CVE-2017-7269https://github.com/eliuha/webdav_exploitPOC Details
2CVE-2017-7269 回显PoC ,用于远程漏洞检测..https://github.com/lcatro/CVE-2017-7269-Echo-PoCPOC Details
3exec 8 bytes commandhttps://github.com/caicai1355/CVE-2017-7269-exploitPOC Details
4Poc for iis6.0https://github.com/M1a0rz/CVE-2017-7269POC Details
5Nonehttps://github.com/whiteHat001/cve-2017-7269picturePOC Details
6fixed msf module for cve-2017-7269https://github.com/zcgonvh/cve-2017-7269POC Details
7iis6 exploit 2017 CVE-2017-7269https://github.com/g0rx/iis6-exploit-2017-CVE-2017-7269POC Details
8Ruby Exploit for IIS 6.0 Buffer Overflow (CVE-2017-7269)https://github.com/slimpagey/IIS_6.0_WebDAV_RubyPOC Details
9Nonehttps://github.com/homjxi0e/cve-2017-7269POC Details
10CVE-2017-7269https://github.com/xiaovpn/CVE-2017-7269POC Details
11CVE-2017-7269 to webshell or shellcode loaderhttps://github.com/zcgonvh/cve-2017-7269-toolPOC Details
12CVE-2017-7269利用代码(rb文件)https://github.com/mirrorblack/CVE-2017-7269POC Details
13Nonehttps://github.com/Al1ex/CVE-2017-7269POC Details
14Nonehttps://github.com/ThanHuuTuan/CVE-2017-7269POC Details
15Nonehttps://github.com/crypticdante/CVE-2017-7269POC Details
16CVE-2017-7269 implemented in python3https://github.com/denchief1/CVE-2017-7269_Python3POC Details
17CVE-2017-7269 implemented in C#https://github.com/denchief1/CVE-2017-7269POC Details
18Nonehttps://github.com/H3xL00m/CVE-2017-7269POC Details
19Nonehttps://github.com/n3ov4n1sh/CVE-2017-7269POC Details
20Nonehttps://github.com/c0d3cr4f73r/CVE-2017-7269POC Details
21Windows Server 2003 & IIS 6.0 - Remote Code Executionhttps://github.com/Cappricio-Securities/CVE-2017-7269POC Details
22This repository contain an script to exploit CVE-2017-7269https://github.com/OmarSuarezDoro/CVE-2017-7269POC Details
23Nonehttps://github.com/Sp3c73rSh4d0w/CVE-2017-7269POC Details
24Nonehttps://github.com/VanishedPeople/CVE-2017-7269POC Details
25Nonehttps://github.com/0xwh1pl4sh/CVE-2017-7269POC Details
26Nonehttps://github.com/N3rdyN3xus/CVE-2017-7269POC Details
27Nonehttps://github.com/NyxByt3/CVE-2017-7269POC Details
28is a PoC tool demonstrating an exploit for a known vulnerability in the WebDAV component of IIS6https://github.com/geniuszlyy/CVE-2017-7269POC Details
29CVE-2017-7269https://github.com/AxthonyV/GenWebDavIISExploitPOC Details
30PoC tool demonstrating an exploit for a known vulnerability in the WebDAV component of IIS6. This tool is designed for educational and research purposes to showcase how the vulnerability can be leveraged to execute arbitrary code on a remote server.https://github.com/AxthonyV/CVE-2017-7269POC Details
31Nonehttps://github.com/h3xcr4ck3r/CVE-2017-7269POC Details
32Nonehttps://github.com/n3rdh4x0r/CVE-2017-7269POC Details
33is a PoC tool demonstrating an exploit for a known vulnerability in the WebDAV component of IIS6https://github.com/geniuszly/CVE-2017-7269POC Details
34Internet Information Services (IIS) 6.0 in Microsoft Windows Server 2003 R2 contains a buffer overflow vulnerability in the ScStoragePathFromUrl function in the WebDAV service that could allow remote attackers to execute arbitrary code via a long header beginning with "If <http://" in a PROPFIND request. https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2017/CVE-2017-7269.yamlPOC Details
35Nonehttps://github.com/h3x0v3rl0rd/CVE-2017-7269POC Details
36A Rust implementation of the POC for CVE-2017-7269, targeting the WebDAV service in Microsoft Internet Information Services (IIS) 6.0.https://github.com/nika0x38/CVE-2017-7269POC Details
37Nonehttps://github.com/Killian0713/Assignement_3-CVE-2017-7269POC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2017-7269

登录查看更多情报信息。

Same Patch Batch · n/a · 2017-03-27 · 46 CVEs total

CVE-2017-6459Windows installer for NTP 缓冲区错误漏洞
CVE-2017-6463Network Time Protocol 输入验证错误漏洞
CVE-2017-6542PuTTY 安全漏洞
CVE-2017-7271Yii Framework 跨站脚本漏洞
CVE-2017-7272PHP 安全漏洞
CVE-2017-7273Linux kernel 安全漏洞
CVE-2017-7274radare2 安全漏洞
CVE-2017-7275ImageMagick 安全漏洞
CVE-2017-7191Irssi 安全漏洞
CVE-2017-6460NTP 缓冲区错误漏洞
CVE-2017-6462NTP 缓冲区错误漏洞
CVE-2017-6458NTP 缓冲区错误漏洞
CVE-2017-6455NTP 安全漏洞
CVE-2017-6452Windows installer for NTP 缓冲区错误漏洞
CVE-2017-6451NTP 安全漏洞
CVE-2016-9243Cryptography HKDF 安全漏洞
CVE-2016-4912OpenSLP 安全漏洞
CVE-2016-10225全志H3,A83T和H8 Allwinner 3.4 legacy kernel 权限许可和访问控制问题漏洞
CVE-2015-8764FreeRADIUS EAP-PWD模块安全漏洞
CVE-2015-8763FreeRADIUS EAP-PWD模块安全漏洞

Showing top 20 of 46 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2017-7269

No comments yet


Leave a comment