Buffer overflow in the ISAPI DLL filter for Macromedia JRun 3.1 allows remote attackers to execute arbitrary code via a direct request to the filter with a long HTTP host header field in a URL for a .jsp file.
http://www.securityfocus.com/bid/4873
http://www.kb.cert.org/vuls/id/703835
http://www.iss.net/security_center/static/9194.php
http://www.cert.org/advisories/CA-2002-14.html
http://online.securityfocus.com/archive/1/274601
http://online.securityfocus.com/archive/1/274528
http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0085.html