vendor:
Apache HTTP Server
by:
Chintan Trivedi
5.5
CVSS
MEDIUM
Denial of Service (DoS)
399
CWE
Product Name: Apache HTTP Server
Affected Version From: Apache 2.0.49
Affected Version To: Unknown
Patch Exists: NO
Related CWE: CAN-2004-0942
CPE: a:apache:http_server:2.0.49
Platforms Tested: Windows 2000 SP4
2004
Apache Squirt Exploit
This exploit targets Apache web servers on Windows systems. It sends a specially crafted header to the server, causing a denial of service condition. The trys parameter determines the number of times the exploit is executed. Increasing the trys parameter can increase the impact of the DoS attack. The exploit has been tested on Apache 2.0.49 running on Windows 2000 SP4.
Mitigation:
There is no specific mitigation or remediation mentioned in the code.