CVE-2006-0026
Buffer overflow in Microsoft Internet Information Services (IIS) 5.0, 5.1, and 6.0 allows local and possibly remote attackers to execute arbitrary code via crafted Active Server Pages (ASP).
Date published : 2006-07-11
http://www.securityfocus.com/bid/18858
http://archives.neohapsis.com/archives/bugtraq/2006-07/0316.html