The WebDAV extension in Microsoft Internet Information Services (IIS) 5.0 on Windows 2000 SP4 does not properly decode URLs, which allows remote attackers to bypass authentication, and possibly read or create files, via a crafted HTTP request, aka "IIS 5.0 WebDAV Authentication Bypass Vulnerability," a different vulnerability than CVE-2009-1535. Buffer overflow in the FTP Service in Microsoft Internet Information Services (IIS) 5.0 through 6.0 allows remote authenticated users to execute arbitrary code via a crafted NLST (NAME LIST) command that uses wildcards, leading to memory corruption, aka "IIS FTP Service RCE and DoS Vulnerability." Buffer overflow in Internet Printing ISAPI extension in Windows 2000 allows remote attackers to gain root privileges via a long print request that is passed to the extension through IIS 5.0.

IIS 5.0 shipped with Windows 2000 and introduced additional authentication methods, support for the WebDAV protocol, and enhancements to ASP. IIS 5.0 also dropped support for the Gopher protocol. IIS 5.0 added HTTP.SYS. IIS 5.1 was shipped with Windows XP Professional, and was nearly identical to IIS 5.0 on Windows 2000.

MS01-023 Microsoft IIS 5.0 Printer Host Header Overflow Disclosed. 05/01/2001. This exploits a buffer overflow in the request processor of the Internet Printing Protocol ISAPI module in IIS. This module works against Windows 2000 service pack 0 and 1. If the service stops responding after a successful exploit, the IIS service will need to be restarted.

Microsoft IIS 5.0 - Authentication Bypass (MS10-065). CVE-66160CVE-2010-2731CVE-MS10-065. IIS 5.0 can host many more sites than IIS 4.0 because of socket pooling. If you use socket pooling, IIS 5.0 services listen on all IP addresses regardless of the IP address that you configure in the IIS snap-in. To disable SMTP Service Socket Pooling, use the Mdutil.exe utility that is located on the Windows 2000 CD-ROM.