vendor:
DHCP Server
by:
Victor Mondragón
7.8
CVSS
HIGH
Denial of Service
400
CWE
Product Name: DHCP Server
Affected Version From: 2.5.2
Affected Version To: 2.5.2
Patch Exists: YES
Related CWE: N/A
CPE: a:dhcpserver:dhcp_server:2.5.2
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows 7 x32 Service Pack 1
2019
DHCP Server 2.5.2 – Denial of Service (PoC)
A denial of service vulnerability exists in DHCP Server 2.5.2 when a specially crafted Bootfile field is sent to the application. An attacker can leverage this vulnerability to cause a denial of service condition.
Mitigation:
Upgrade to the latest version of DHCP Server 2.5.2 or apply the appropriate patch.