There were also a couple of threads about this earlier. Hope these links help you out :)
March 25th, 2003, 06:46 PM
This is much bigger than WebDAV though. The original zero-day exploit of a U.S. Military computer happened to use WebDAV as the attack vector, but the root problem is function of a core system DLL.
Many applications and even other DLL's leverage this same DLL function so there are a multitude of potential attack vectors for exploiting this vulnerability. Some of the security firms have sounded the alarm, but it seems like Microsoft and the mainstream press are still focusing on WebDAV and IIS 5.0 which may give some a false sense of security.
Essentially, everyone with Windows 2000 should apply the patch for this flaw. Here are some references: