← All articles
20 April 2015

Microsoft IIS vulnerability (MS15-034)

Microsoft disclosed a critical vulnerability (MS15-034) on their web server IIS that allows for remote code execution.

Microsoft disclosed a critical vulnerability (MS15-034) affecting their web server IIS that allows for remote, unauthenticated denial of service and remote code execution.

This security update is rated Critical for all supported editions of Windows 7, Windows Server 2008 R2, Windows 8, Windows Server 2012, Windows 8.1 and Windows Server 2012 R2. You can read more details about the affected versions in the Microsoft Security Bulletin.

The vulnerability is particularly severe because an attacker only needs to send an HTTP request with the right header to exploit it. We recommend applying the update as soon as possible.

← Back to all articles
Get in touch

let's work together

ready to exceed expectations

Prefer to talk? Call 01704 639121 or email [email protected].

We'll only use your details to reply to your enquiry. See our Privacy Policy.