vendor:
HS TFTP
by:
Prabhu S Angadi
5
CVSS
MEDIUM
Denial Of Service
N/A
CWE
Product Name: HS TFTP
Affected Version From: Hillstone Software HS TFTP 1.3.2
Affected Version To: Hillstone Software HS TFTP 1.3.2
Patch Exists: NO
Related CWE: N/A
CPE: a:hillstone_software:hs_tftp
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3 & Win 7
2011
Hillstone Software HS TFTP Server Denial Of Service Vulnerability
The vulnerability is caused due to improper validation of WRITE/READ Request Parameter containing long file name, which allows remote attackers to crash the service.
Mitigation:
Not available