Loading
Buffer overflow in Microsoft Internet Information Services (IIS) 5.0, 5.1, and 6.0 allows local and possibly remote attackers to execute arbitrary code via crafted Active Server Pages (ASP).
Use Microsoft vendor hub and Internet Information Server product page to widen CVE-2006-0026 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2008-0075, CVE-2009-3023 and CVE-2010-1256 for nearby disclosures in the same product family. Additional editorial context is available in Weekly Security Roundup: Navigating the April 2026 Threat Landscape and Critical Framework Exploits.