Open Vulnerability and Assessment Language (OVAL)
Offical Language Release Repository Downloads News — November 5, 2009 Search
link to OVAL home page

View Test

Test Id: oval:org.mitre.oval:tst:3081 Version: 1
Comment: IIS major version equals 5
Type: registry_test
Namespace: http://oval.mitre.org/XMLSchema/oval-definitions-5#windows
Created Date: 2006-06-16 Last Modified Date: 2009-10-22
Check: at least one Check_Existence: at_least_one_exists
References:
Object: oval:org.mitre.oval:obj:1754
State: oval:org.mitre.oval:ste:2886

Referencing Definitions

   
Total: 33 definitions
Definition Id Class Title Last Modified Ref-Id
oval:org.mitre.oval:def:191 V IIS Web Server File Request Parsing 2009-05-07 CVE-2000-0886
oval:org.mitre.oval:def:44 V IIS Web Server Folder Traversal 2009-05-07 CVE-2000-0884
oval:org.mitre.oval:def:90 V IIS Denial of Service via WebDAV 2009-05-07 CVE-2001-0151
oval:org.mitre.oval:def:1009 V Windows XP IIS5 WebDAV Denial of Service 2007-07-18 CVE-2002-1182
oval:org.mitre.oval:def:933 V IIS WebDAV Request Denial of Service 2007-07-18 CVE-2003-0226
oval:org.mitre.oval:def:983 V Windows XP IIS Out of Process Privilege Elevation Vulnerability 2007-07-18 CVE-2002-0869
oval:org.mitre.oval:def:130 V Windows 2000 HTR ISAPI Buffer Overflow 2007-05-07 CVE-2002-0071
oval:org.mitre.oval:def:197 V IIS ISAPI Extension Indexing Service Buffer Overflow (Code Red) 2007-05-07 CVE-2001-0500
oval:org.mitre.oval:def:22 V Windows 2000 Variant of Chunked Encoding Buffer Overrun 2007-05-07 CVE-2002-0147
oval:org.mitre.oval:def:25 V Windows 2000 IIS Chunked Encoding Buffer Overflow 2007-05-07 CVE-2002-0079
oval:org.mitre.oval:def:29 V Windows 2000 IIS Heap Overrun in HTR Chunked Encoding 2007-05-07 CVE-2002-0364
oval:org.mitre.oval:def:35 V Windows 2000 IIS FTP Connection Status Request Denial of Service 2007-05-07 CVE-2002-0073
oval:org.mitre.oval:def:39 V Windows 2000 IIS HTTP Header Field Buffer Overflow 2007-05-07 CVE-2002-0150
oval:org.mitre.oval:def:483 V IIS Server Side Include Web Pages Buffer Overrun 2007-05-07 CVE-2003-0224
oval:org.mitre.oval:def:95 V Windows 2000 IIS ASP Server-Side Include Function Buffer Overflow 2007-05-07 CVE-2002-0149
oval:org.mitre.oval:def:460 I Microsoft IIS 5.1 is installed 2007-04-30 cpe:/a:microsoft:iis:5.1
oval:org.mitre.oval:def:731 I Microsoft IIS 5.0 is installed 2007-04-30 cpe:/a:microsoft:iis:5.0
oval:org.mitre.oval:def:373 V IIS AddHeader Large Header Denial of Service 2005-03-07 CVE-2003-0225
oval:org.mitre.oval:def:66 V IIS ASP Function Cross-site Scripting 2005-03-07 CVE-2003-0223
oval:org.mitre.oval:def:1068 V Windows 2000 Internet Printing ISAPI Extension Buffer Overflow 2005-01-14 CVE-2001-0241
oval:org.mitre.oval:def:1011 V Windows 2000 IIS5 WebDAV Denial of Service 2005-01-11 CVE-2002-1182
oval:org.mitre.oval:def:912 V Windows 2000 IIS System File Listing Privilege Elevation Vulnerability 2005-01-11 CVE-2001-0507
oval:org.mitre.oval:def:930 V Windows 2000 IIS Out of Process Privilege Elevation Vulnerability 2005-01-11 CVE-2002-0869
oval:org.mitre.oval:def:931 V IIS5.0 Script Source Access Vulnerability 2005-01-11 CVE-2002-1180
oval:org.mitre.oval:def:942 V Windows 2000 IIS Cross-site Scripting Vulnerabilities 2005-01-11 CVE-2002-1181
oval:org.mitre.oval:def:78 V Windows 2000 IIS Directory Traversal Command Execution (Test 1) 2004-08-04 CVE-2001-0333
oval:org.mitre.oval:def:936 V Windows 2000 Media Services ISAPI Logging Vulnerability 2004-05-18 CVE-2003-0227
oval:org.mitre.oval:def:938 V IIS5.0 Windows Media Services Large POST Vulnerability 2004-05-18 CVE-2003-0349
oval:org.mitre.oval:def:1051 V Windows 2000 IIS Directory Traversal Command Execution (Test 2) 2004-05-12 CVE-2001-0333
oval:org.mitre.oval:def:927 V IIS5.0 Specialized Header Vulnerability 2004-05-04 CVE-2000-0778
oval:org.mitre.oval:def:210 V Windows 2000 IIS HTTP Redirect Error Message Cross-site Scripting 2003-10-10 CVE-2002-0075
oval:org.mitre.oval:def:46 V IIS Help File Search Cross-site Scripting 2003-10-10 CVE-2002-0074
oval:org.mitre.oval:def:92 V Windows 2000 IIS HTTP Error Page Cross-site Scripting 2003-10-10 CVE-2002-0148