
CVE-2001-1533
https://notcve.org/view.php?id=CVE-2001-1533
31 Dec 2001 — Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote attackers to cause a denial of service via a flood of fragmented UDP packets. NOTE: the vendor disputes this issue, saying that it requires high bandwidth to exploit, and the server does not experience any instability. Therefore this "laws of physics" issue might not be included in CVE • http://cert.uni-stuttgart.de/archive/bugtraq/2001/11/msg00018.html •

CVE-2001-0546
https://notcve.org/view.php?id=CVE-2001-0546
20 Sep 2001 — Memory leak in H.323 Gatekeeper Service in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote attackers to cause a denial of service (resource exhaustion) via a large amount of malformed H.323 data. • http://www.securityfocus.com/bid/3196 •

CVE-2001-0547
https://notcve.org/view.php?id=CVE-2001-0547
20 Sep 2001 — Memory leak in the proxy service in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows local attackers to cause a denial of service (resource exhaustion). • http://www.securityfocus.com/bid/3197 •

CVE-2001-0658
https://notcve.org/view.php?id=CVE-2001-0658
20 Sep 2001 — Cross-site scripting (CSS) vulnerability in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote attackers to cause other clients to execute certain script or read cookies via malicious script in an invalid URL that is not properly quoted in an error message. • http://www.securityfocus.com/bid/3198 •

CVE-2001-0239 – Microsoft ISA Server 2000 Web Proxy - Denial of Service
https://notcve.org/view.php?id=CVE-2001-0239
02 Jul 2001 — Microsoft Internet Security and Acceleration (ISA) Server 2000 Web Proxy allows remote attackers to cause a denial of service via a long web request with a specific type. • https://www.exploit-db.com/exploits/20763 •