CVE-2000-0886

Internet Information Server 5.0 - Remote Code Execution via Malformed Executable File Request

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2000-0886. PoCs published by Nsfocus.

AI-analyzed exploit summary This exploit leverages a command injection vulnerability in Microsoft IIS 4.0/5.0 where specially crafted requests to .bat or .cmd files allow execution of arbitrary commands via cmd.exe. The PoC includes multiple URL variants to trigger directory listings or command execution, including bypasses for the initial patch (Q277873).

Description

IIS 5.0 allows remote attackers to execute arbitrary commands via a malformed request for an executable file whose name is appended with operating system commands, aka the "Web Server File Request Parsing" vulnerability.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Nsfocus · textremotewindows
https://www.exploit-db.com/exploits/20384

This exploit leverages a command injection vulnerability in Microsoft IIS 4.0/5.0 where specially crafted requests to .bat or .cmd files allow execution of arbitrary commands via cmd.exe. The PoC includes multiple URL variants to trigger directory listings or command execution, including bypasses for the initial patch (Q277873).

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Microsoft IIS 4.0/5.0
No auth needed
Prerequisites: Existing .bat or .cmd file in an executable directory · Network access to target IIS server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/1912
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/5470
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A191

Scores

EPSS 0.6874
EPSS Percentile 99.3%

Details

Status published
Products (2)
microsoft/internet_information_server 4.0
microsoft/internet_information_services 5.0
Published Dec 19, 2000
Tracked Since Feb 18, 2026