vendor:
seafile-server
by:
retset
7,5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: seafile-server
Affected Version From: 3.1.4
Affected Version To: 3.1.5
Patch Exists: YES
Related CWE: N/A
CPE: a:seafile:seafile_server
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7
2014
ccnet-server remote DoS (assert) seafile-server <= 3.1.5
This exploit is used to cause a denial of service on a seafile-server version 3.1.4 or lower. The exploit sends a packet of data to the server which causes an assertion error, crashing the server. The exploit was tested on Windows 7 and seafile-server 3.1.5.
Mitigation:
Upgrade to the latest version of seafile-server.