CVE-2006-7027

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/02/2007
Last modified:
09/04/2025

Description

Microsoft Internet Security and Acceleration (ISA) Server 2004 logs unusual ASCII characters in the Host header, including the tab, which allows remote attackers to manipulate portions of the log file and possibly leverage this for other attacks.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microsoft:isa_server:2004:*:*:*:*:*:*:*