vendor:
MyServer HTTP Server
by:
deadbeat, uk2sec
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: MyServer HTTP Server
Affected Version From: 2000.4.1
Affected Version To: 2000.4.1
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2002
MyServer HTTP Server Remote Denial of Service Vulnerability
MyServer HTTP server is prone to a remote denial of service attack due to a lack of sufficient bounds checking, performed on arguments that are supplied via malicious HTTP GET requests. A malicious HTTP GET request containing excessive data can trigger a segmentation fault in the server executable and the software will fail.
Mitigation:
Ensure that the server is configured to perform sufficient bounds checking on arguments supplied via malicious HTTP GET requests.