EXPOSURES › CVE-2017-7269
CVE-2017-7269
HIGH ⌖ ON CISA KEV · EXPLOITEDA buffer overflow in Microsoft IIS 6.0 on Windows Server 2003 R2 allowed remote attackers to execute code via a malformed PROPFIND request.
This unpatched vulnerability in legacy IIS 6.0 enabled remote code execution, a critical risk for organizations still running end-of-life systems. DIBs must ensure no legacy IIS 6.0 remains unpatched or unmonitored, as it was actively exploited in the wild and linked to ransomware campaigns. Immediate remediation involves patching or decommissioning affected systems.
Shame score — Microsoft failed to patch a known, actively exploited vulnerability in a widely deployed legacy product, enabling remote code execution and linking to ransomware attacks.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Microsoft Windows Server 2003 R2 contains a buffer overflow vulnerability in Internet Information Services (IIS) 6.0 which allows remote attackers to execute code via a long header beginning with "If: <http://" in a PROPFIND request.
"You are viewing this page in an unauthorized frame window."
"Microsoft Windows Server 2003 R2 contains a buffer overflow vulnerability in Internet Information Services (IIS) 6.0 which allows remote attackers to execute code."
"TOP 100 Vendors with CVE"
| PRODUCT | STATUS |
|---|---|
| Azure Commercial Cloud Microsoft |
Authorized |
| Azure Government (includes Dynamics 365) Microsoft |
Authorized |
| Microsoft Office 365 GCC High Microsoft |
In Process |
| Office 365 Multi-Tenant & Supporting Services Microsoft |
Authorized |