vendor:
Orenosv FTP Server
by:
CoolICE
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: Orenosv FTP Server
Affected Version From: 0.6.0
Affected Version To: 0.6.0
Patch Exists: NO
Related CWE: N/A
CPE: a:orenosv:orenosv_ftp_server
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2004
Orenosv HTTP/FTP Server Denial of Service Vulnerability
Orenosv HTTP/FTP server is prone to a denial of service vulnerability that may occur when an overly long HTTP GET request is sent to the server. When the malicious request is handled, it is reported that both the HTTP and FTP daemons will stop responding.
Mitigation:
Ensure that the server is configured to reject overly long HTTP GET requests.