vendor:
Apache Web Server
by:
SecurityFocus
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: Apache Web Server
Affected Version From: 1.2
Affected Version To: Previous versions
Patch Exists: NO
Related CWE: N/A
CPE: apache
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2002
Apache Web Server Denial of Service Vulnerability
Apache Web Server 1.2 and previous versions are subject to a denial of service. By requesting a malformed GET request composed of an unusually large number of '/' characters, an attacker can cause CPU usage to spike. A restart of the service is required to gain normal functionality.
Mitigation:
Restart the service to gain normal functionality.