vendor:
Durian Web Application Server
by:
rgod
7,5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: Durian Web Application Server
Affected Version From: 3.02
Affected Version To: 3.02
Patch Exists: Yes
Related CWE: N/A
CPE: a:durian_software:durian_web_application_server
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2006
Durian Web Application Server 3.02 freeware for Win32 denial of service exploit
This exploit will merely show 1000 access violation boxes to screen. It creates a socket connection to the target machine and sends a junk string of varying sizes and characters to the target machine. This causes the target machine to crash.
Mitigation:
Upgrade to the latest version of Durian Web Application Server.