← back
CVE-2009-1536observed exploitation

CVE-2009-1536

37Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Actepss 51%
from disclosure to weapon
Published on NVDAug 12
VulnCheck+1d
exploitation probability
51%top 1% of all CVEs
observed exploitation
yesVulnCheck
ASP.NET in Microsoft .NET Framework 2.0 SP1 and SP2 and 3.5 Gold and SP1, when ASP 2.0 is used in integrated mode on IIS 7.0, does not properly manage request scheduling, which allows remote attackers to cause a denial of service (daemon outage) via a series of crafted HTTP requests, aka "Remote Unauthenticated Denial of Service in ASP.NET Vulnerability."
Affected products
n/a · n/a