MDG Web Server 4D GET Request Remote Overflow

medium Nessus Plugin ID 11560

Language:

Synopsis

The remote service is vulnerable to a denial of service attack.

Description

It is possible to kill the web server by sending an oversized string of '<' as an argument to a GET request.

An attacker may exploit this vulnerability to make your web server crash continually or even execute arbitrary code on your system.

Solution

Unknown at this time.

See Also

https://seclists.org/fulldisclosure/2003/May/3

Plugin Details

Severity: Medium

ID: 11560

File Name: ws4d_overflow.nasl

Version: 1.22

Type: remote

Family: Web Servers

Published: 5/4/2003

Updated: 11/15/2018

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Medium

Base Score: 5

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Information

Exploit Available: true

Exploit Ease: Exploits are available

Reference Information

BID: 7479