Orange Web Server Malformed HTTP Request Remote DoS

This script is Copyright (C) 2001-2011 Tenable Network Security, Inc.


Synopsis :

The remote has an application that is affected by a denial
of service vulnerability.

Description :

It was possible to make the remote web server crash
by sending it an invalid HTTP request (GET A). An attacker
may use this flaw to prevent this host from fulfilling
its role.

Solution :

Contact your vendor for a patch.

Risk factor :

Medium / CVSS Base Score : 5.0
(CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P)
CVSS Temporal Score : 5.0
(CVSS2#E:H/RL:U/RC:ND)
Public Exploit Available : true

Family: Web Servers

Nessus Plugin ID: 10636 ()

Bugtraq ID: 2432

CVE ID: CVE-2001-0647