Windows Server 2003 and URL Scan

Posted on 2014-04-21
Medium Priority
Last Modified: 2014-04-23
My company converted to McAffee server scans and it is flagging an event

Windows Server 2003 (Service Pack 2)  5182  Microsoft Internet Information Services Remote DoS   Microsoft Internet Information Services contains a vulnerability that may allow for remote denial-of-service attacks.   High      Microsoft Internet Information Server (IIS) is an industry-standard Web server for the Windows platform.

Microsoft Internet Information Services contains a vulnerability that may allow for remote denial-of-service attacks. A specially crafted request sent to the server may render it unresponsive."      CVE-2007-2897       "McAfee is currently unaware of a vendor-supplied patch or update (07/16/2013).

To mitigate the impact of this vulnerability, URLScan can be configured to filter URL requests that cause the denial of service. http://www.iis.net/downloads/microsoft/urlscan

I am wondering what impact this will have on my server if I add it.  It's an old server and I would hate to mess it up but I think they are going to force me to install it.
Question by:kdschool
  • 5
  • 2
LVL 19

Expert Comment

by:Miguel Angel Perez Muñoz
ID: 40012520
Any app increases CPU and RAM, thats depends of how many clients has your webserver, if your server has 1 connection per hour URLScan not work same as you have 2k connections.

Best practices recommends do on a lab test before live environment, you can clone your webserver and run on a virtual machine for testing purposes.
LVL 85

Expert Comment

by:David Johnson, CD, MVP
ID: 40012603
you should have installed urlscan a long time ago.. it has minimal impact and prevents a lot of attacks including sql injection attacks.  Urlscan is a recommended best practice as defined by Microsoft

Author Comment

ID: 40012667
When I install it will the default have any impact on who can access the site or will that only be impacted if I add URL's to be restricted.  I am not clear on how it works.
Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.


Author Comment

ID: 40012699
It looks like they have already addressed this with automatic updates?  This is a really old hardware server with very little memory left.  We are currently migrating to a new server so if I don't have to add anything at this point I think I would be better off.  Is this the right article for this item?

LVL 85

Accepted Solution

David Johnson, CD, MVP earned 2000 total points
ID: 40012760
have you run the Microsoft Baseline Security Analyzer? (MBSA) http://www.microsoft.com/en-ca/download/confirmation.aspx?id=7558

Author Comment

ID: 40013045
This is a 32 bit server when I go to this page it's saying.  Will this work on a 32 bit OS?


Author Comment

ID: 40013150
Never mind I found the x86 version will let you know when I install it.

Author Comment

ID: 40013182
I ran this and scanned the server. Says everything is good,  no security updates missing and did not flag anything under vunerabilities.  Everything checked out ok.

Featured Post

Get expert help—faster!

Need expert help—fast? Use the Help Bell for personalized assistance getting answers to your important questions.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Running classic asp applications under Windows Server 2008 R2 (x64) and IIS 7 is not as easy as one may think. It took me a while to figure it out while getting error 8002801d a few times. After you install the OS you will need to install the fol…
This article provides a convenient collection of links to Microsoft provided Security Patches for operating systems that have reached their End of Life support cycle. Included operating systems covered by this article are Windows XP,  Windows Server…
Free Data Recovery software is an advanced solution from Kernel Tools to recover data and files such as documents, emails, database, media and pictures, etc. It supports recovery from physical & logical drive after a hard disk crash, accidental/inte…
Through the video, you can check the migration process of Outlook PST file to PDF. Kernel for Outlook to PDF tool can convert Outlook emails with all attributes like Subject, To, From, Cc, Bcc and other folders such as Inbox, Outbox, Sent Items, Jun…

607 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question