vendor:
Web Vulnerability Scanner
by:
nitr0us
5.5
CVSS
MEDIUM
Denial of Service
400
CWE
Product Name: Web Vulnerability Scanner
Affected Version From: 4.0 Build 20060717
Affected Version To: 4.0 Build 20060717
Patch Exists: NO
Related CWE:
CPE: a:acunetix:web_vulnerability_scanner:4.0
Platforms Tested:
2007
Acunetix Web Vulnerability Scanner Remote Denial of Service
The Acunetix Web Vulnerability Scanner 4.0 <= Build 20060717 is vulnerable to a remote denial of service attack. The vulnerability is triggered when a malformed packet with an invalid 'Content-Length' field is sent to the scanner. This causes the application to crash. The vulnerability has been fixed in later versions of the scanner.
Mitigation:
Upgrade to a version of Acunetix Web Vulnerability Scanner that is not affected by this vulnerability.