Microsoft ISA Server 2000 allows remote attackers to poison the ISA cache or bypass content restriction policies via a malformed HTTP request packet containing multiple Content-Length headers.
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-034
No PoCs found on GitHub currently.