(MS14-076) Vulnerability in Internet Information Services (IIS) Could Allow Security Feature Bypass (2982998)
2014年11月14日
危険度: 高
CVE識別番号: CVE-2014-4078
情報公開日: 11 14, 2014
概要
This update resolves a security bypass feature that exists in Microsoft Information Services (IIS) versions 8.0 and 8.5. The update fixes the vulnerability specifically in how inbound requests are processed against a list of IPs and domains that are to be allowed or denied.
対応方法
影響を受けるソフトウェア
- Windows 8 for 32-bit Systems
- Windows 8 for x64-based Systems
- Windows 8.1 for 32-bit Systems
- Windows 8.1 for x64-based Systems
- Windows Server 2012
- Windows Server 2012 R2