A denial of service exists in Microsoft IIS Server when the optional request filtering feature improperly handles requests. An attacker who successfully exploited this vulnerability could perform a temporary denial of service against pages configured to use request filtering.
To exploit this vulnerability, an attacker could send a specially crafted request to a page utilizing request filtering.
The update addresses the vulnerability by changing the way certain requests are processed by the filter.
Metrics
Affected Vendors & Products
References
History
Tue, 20 May 2025 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A denial of service exists in Microsoft IIS Server when the optional request filtering feature improperly handles requests, aka 'Microsoft IIS Server Denial of Service Vulnerability'. | A denial of service exists in Microsoft IIS Server when the optional request filtering feature improperly handles requests. An attacker who successfully exploited this vulnerability could perform a temporary denial of service against pages configured to use request filtering. To exploit this vulnerability, an attacker could send a specially crafted request to a page utilizing request filtering. The update addresses the vulnerability by changing the way certain requests are processed by the filter. |
Title | Microsoft IIS Server Denial of Service Vulnerability | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: microsoft
Published: 2019-06-12T13:49:38
Updated: 2025-05-20T17:49:32.602Z
Reserved: 2018-11-26T00:00:00
Link: CVE-2019-0941

No data.

Status : Modified
Published: 2019-06-12T14:29:01.667
Modified: 2025-05-20T18:15:30.557
Link: CVE-2019-0941

No data.