vendor:
Pi3Web Server
by:
Angelo Rosiello
7.5
CVSS
HIGH
Denial of Service
400
CWE
Product Name: Pi3Web Server
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Unix
2003
Pi3Web Server Denial of Service Vulnerability
It has been reported that Pi3Web server is prone to a denial of service vulnerability. Reportedly, when a malicious GET request is sent to the Pi3Web server the server will fail. It should be noted that the Unix version has been reported vulnerable, it is not currently known if other platforms are affected.
Mitigation:
Ensure that the Pi3Web server is updated to the latest version and that all malicious requests are blocked.