vendor:
HFS Http File Server
by:
hyp3rlinx
7.5
CVSS
HIGH
Remote Buffer Overflow (DoS)
119
CWE
Product Name: HFS Http File Server
Affected Version From: 2.3m Build 300
Affected Version To: 2.3m Build 300
Patch Exists: NO
Related CWE: CVE-2020-13432
CPE: a:rejetto:hfs_http_file_server:2.3m
Platforms Tested:
2020
HFS Http File Server 2.3m Build 300 – Buffer Overflow (PoC)
rejetto HFS (aka HTTP File Server) v2.3m Build #300, when virtual files or folders are used, allows remote attackers to trigger an invalid-pointer write access violation via concurrent HTTP requests with a long URI or long HTTP headers like Cookie, User-Agent etc. Remote unauthenticated attackers can send concurrent HTTP requests using an incrementing or specific payload range of junk characters for values in the URL parameters or HTTP headers sent to the server. This results in hfs.exe server crash from an invalid pointer write access violation.
Mitigation:
Apply the vendor patch or upgrade to the latest version of the HFS Http File Server.