Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier allows remote attackers to execute arbitrary commands via a long argument to Internet Data Administration (.ida) and Internet Data Query (.idq) files such as default.ida, as commonly exploited by Code Red.
| Software | From | Fixed in |
|---|---|---|
| microsoft / internet_information_server | - | 6.0.x |
| microsoft / indexing_service | - | - |
| microsoft / index_server | 2.0 | 2.0.x |