vendor:
Reptile
by:
SecurityFocus
5
CVSS
MEDIUM
Remote Denial of Service
399
CWE
Product Name: Reptile
Affected Version From: Reptile
Affected Version To: Reptile
Patch Exists: No
Related CWE: N/A
CPE: a:reptile:reptile
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2002
Reptile Remote Denial of Service Vulnerability
Reptile is vulnerable to a remote denial of service attack due to the server not timing out on incomplete requests. An attacker can exploit this vulnerability by sending incomplete GET requests to the webserver, such as 'GET index.htm' without specifying the HTTP* at the end of the request.
Mitigation:
Time out requests after a certain period of time.