CVE-2015-1635
CRITICAL KEV NUCLEIMS15-034 HTTP Protocol Stack Request Handling Denial-of-Service
Title source: metasploitExploitation Summary
CVE-2015-1635 is actively exploited and listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, added February 10, 2022.
EIP tracks 20 public exploits from researchers including laurent gaffie, rhcp011235, technion, including a Metasploit module auxiliary/dos/http/ms15_034_ulonglongadd.
A Nuclei detection template is also available.
AI-analyzed exploit summary This exploit triggers a denial-of-service (DoS) condition in Microsoft IIS by sending a malformed HTTP Range header, causing the server to crash. It requires the presence of 'iisstart.htm' and sends two HTTP requests to exploit CVE-2015-1635.
Description
HTTP.sys in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8, Windows 8.1, and Windows Server 2012 Gold and R2 allows remote attackers to execute arbitrary code via crafted HTTP requests, aka "HTTP.sys Remote Code Execution Vulnerability."
Exploits (20)
This exploit triggers a denial-of-service (DoS) condition in Microsoft IIS by sending a malformed HTTP Range header, causing the server to crash. It requires the presence of 'iisstart.htm' and sends two HTTP requests to exploit CVE-2015-1635.
This code is a scanner for CVE-2025-1635 (MS15-034), which checks if a target IIS server is vulnerable to the HTTP.sys Range header DoS vulnerability. It sends a malformed Range header and checks the response to determine vulnerability status.
This repository contains a web-based concurrent scanner for CVE-2015-1635, which is a vulnerability in Microsoft Windows HTTP.sys. The scanner is built using Erlang and includes a frontend developed with TypeScript and Webpack.
This PoC checks for the presence of CVE-2015-1635 (MS15-034) by sending a crafted HTTP request with an invalid Range header to trigger a denial-of-service condition in Microsoft IIS HTTP.sys. It does not execute arbitrary code but confirms vulnerability existence.
This repository contains a scanner for CVE-2015-1635, which checks if a target IIS server is vulnerable to the HTTP.sys Remote Code Execution vulnerability (MS15-034). It sends a crafted HTTP request with an invalid Range header to detect the vulnerability.
This repository contains a Python script that checks for the presence of CVE-2015-1635 (MS15-034), a remote code execution vulnerability in HTTP.sys. The script sends a crafted HTTP request to determine if the target IIS server is vulnerable or patched.
This repository contains a Python-based scanner for detecting CVE-2015-1635, a Windows HTTP.sys remote code execution vulnerability. The tool checks for the presence of the vulnerability by sending crafted HTTP requests and analyzing responses for specific error messages.
This PoC checks for CVE-2015-1635 (MS15-034), an integer overflow vulnerability in Microsoft HTTP.sys. It sends a crafted HTTP request with an oversized Range header to trigger the vulnerability and checks the response to determine if the target is vulnerable.
This PoC checks for the presence of CVE-2015-1635 (MS15-034) by sending a malformed HTTP Range header to an IIS server and analyzing the response to determine if the server is vulnerable or patched.
This PoC checks for the presence of CVE-2015-1635 (HTTP.sys Remote Code Execution) by sending a malformed Range header and checking for a 416 response. It does not exploit the vulnerability but detects its presence.
This repository contains a Python-based scanner for detecting CVE-2015-1635 (MS15-034), a vulnerability in Microsoft IIS. The script checks for the presence of the vulnerability by sending crafted HTTP requests and analyzing responses.
This repository contains a Python-based toolkit for exploiting CVE-2015-1635, a vulnerability in HTTP.sys that allows for denial-of-service (DoS) attacks via a malformed Range header. The tool includes both a vulnerability scanner and a DoS attack module.
This PoC checks for CVE-2015-1635, a DoS vulnerability in Microsoft IIS due to improper handling of HTTP Range headers. It sends a crafted HTTP request with an excessively large Range header to trigger the vulnerability.
This repository contains a Python script to check for CVE-2015-1635 (MS15-034), a vulnerability in HTTP.sys that allows remote code execution via a crafted HTTP request. The script sends a malformed Range header to determine vulnerability status and includes an optional DoS attack payload.
This repository contains a PHP-based web scanner for detecting CVE-2015-1635 (MS15-034), a vulnerability in HTTP.sys that allows remote code execution. It sends a crafted HTTP request with a malformed Range header to check if the target server is vulnerable.
This Metasploit module exploits CVE-2015-1635, a vulnerability in Microsoft HTTP.sys (MS15-034), by sending a malformed Range header to trigger a denial-of-service (DoS) condition. It includes both detection and exploitation logic.
This Metasploit module exploits CVE-2015-1635 (MS15-034) to dump memory contents from vulnerable Windows systems (8.1, Server 2012, 2012R2) by sending a crafted Range header in an HTTP request, leveraging an information disclosure vulnerability in HTTP.SYS.
This repository contains a functional exploit for CVE-2015-1635 (MS15-034), which is a HTTP.sys vulnerability in Microsoft Windows. The exploit sends a crafted HTTP request with a malformed Range header to trigger a denial-of-service (DoS) condition. The tool includes both vulnerability scanning and DoS attack capabilities.
The repository contains a C program that checks for the presence of CVE-2015-1635 (HTTP.sys vulnerability) by sending crafted HTTP requests to detect if the target IIS server is vulnerable or patched. It does not exploit the vulnerability but scans for its presence.
This repository contains a Python script that scans for the presence of CVE-2015-1635 (MS15-034), an HTTP.sys remote code execution vulnerability in Microsoft IIS. The script sends a crafted HTTP request with a malformed Range header to detect if the target system is vulnerable or patched.
Nuclei Templates (1)
"Microsoft-IIS" "2015" || "microsoft-iis" "2015" || cpe:"cpe:2.3:o:microsoft:windows_7"
References (8)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H