MySQL MaxDB WebAgent Input Validation Multiple Remote Denial Of Service Vulnerabilities
BID:12805
Info
MySQL MaxDB WebAgent Input Validation Multiple Remote Denial Of Service Vulnerabilities
| Bugtraq ID: | 12805 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2005-0083 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 14 2005 12:00AM |
| Updated: | Jul 12 2009 10:56AM |
| Credit: | An anonymous researcher discovered this issue. |
| Vulnerable: |
MySQL AB MaxDB 7.5 .00.23 MySQL AB MaxDB 7.5 .00.19 MySQL AB MaxDB 7.5 .00.18 MySQL AB MaxDB 7.5 .00.16 MySQL AB MaxDB 7.5 .00.15 MySQL AB MaxDB 7.5 .00.14 MySQL AB MaxDB 7.5 .00.12 MySQL AB MaxDB 7.5 .00.11 MySQL AB MaxDB 7.5 .00.08 MySQL AB MaxDB 7.5 .00 |
| Not Vulnerable: |
MySQL AB MaxDB 7.5 .00.24 |
Discussion
MySQL MaxDB WebAgent Input Validation Multiple Remote Denial Of Service Vulnerabilities
MaxDB WebAgent is prone to multiple remote denial of service vulnerabilities. These issues arise as the application fails to sufficiently sanitize user-supplied parameter input.
A remote attacker may exploit this vulnerability to deny service to legitimate users.
This vulnerability is reported to affect MySQL MaxDB 7.5.00 for Microsoft Windows platforms; other versions might also be affected.
MaxDB WebAgent is prone to multiple remote denial of service vulnerabilities. These issues arise as the application fails to sufficiently sanitize user-supplied parameter input.
A remote attacker may exploit this vulnerability to deny service to legitimate users.
This vulnerability is reported to affect MySQL MaxDB 7.5.00 for Microsoft Windows platforms; other versions might also be affected.
Exploit / POC
MySQL MaxDB WebAgent Input Validation Multiple Remote Denial Of Service Vulnerabilities
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
MySQL MaxDB WebAgent Input Validation Multiple Remote Denial Of Service Vulnerabilities
Solution:
The vendor has addressed this issue in MaxDB 7.5.00.24 and subsequent releases. MaxDB 7.5.00.24 is available for download.
MySQL AB MaxDB 7.5 .00.18
MySQL AB MaxDB 7.5 .00.08
MySQL AB MaxDB 7.5 .00.12
MySQL AB MaxDB 7.5 .00.16
MySQL AB MaxDB 7.5 .00.23
MySQL AB MaxDB 7.5 .00.19
MySQL AB MaxDB 7.5 .00.14
MySQL AB MaxDB 7.5 .00.15
MySQL AB MaxDB 7.5 .00.11
MySQL AB MaxDB 7.5 .00
Solution:
The vendor has addressed this issue in MaxDB 7.5.00.24 and subsequent releases. MaxDB 7.5.00.24 is available for download.
MySQL AB MaxDB 7.5 .00.18
-
MySQL AB MaxDB 7.5.00.24
http://dev.mysql.com/downloads/maxdb/7.5.00.html
MySQL AB MaxDB 7.5 .00.08
-
MySQL AB MaxDB 7.5.00.24
http://dev.mysql.com/downloads/maxdb/7.5.00.html
MySQL AB MaxDB 7.5 .00.12
-
MySQL AB MaxDB 7.5.00.24
http://dev.mysql.com/downloads/maxdb/7.5.00.html
MySQL AB MaxDB 7.5 .00.16
-
MySQL AB MaxDB 7.5.00.24
http://dev.mysql.com/downloads/maxdb/7.5.00.html
MySQL AB MaxDB 7.5 .00.23
-
MySQL AB MaxDB 7.5.00.24
http://dev.mysql.com/downloads/maxdb/7.5.00.html
MySQL AB MaxDB 7.5 .00.19
-
MySQL AB MaxDB 7.5.00.24
http://dev.mysql.com/downloads/maxdb/7.5.00.html
MySQL AB MaxDB 7.5 .00.14
-
MySQL AB MaxDB 7.5.00.24
http://dev.mysql.com/downloads/maxdb/7.5.00.html
MySQL AB MaxDB 7.5 .00.15
-
MySQL AB MaxDB 7.5.00.24
http://dev.mysql.com/downloads/maxdb/7.5.00.html
MySQL AB MaxDB 7.5 .00.11
-
MySQL AB MaxDB 7.5.00.24
http://dev.mysql.com/downloads/maxdb/7.5.00.html
MySQL AB MaxDB 7.5 .00
-
MySQL AB MaxDB 7.5.00.24
http://dev.mysql.com/downloads/maxdb/7.5.00.html
References
MySQL MaxDB WebAgent Input Validation Multiple Remote Denial Of Service Vulnerabilities
References:
References:
- MaxDB Homepage (MySQL AB)
- iDEFENSE Security Advisory 03.14.05: MySQL MaxDB Web Agent Multiple Denial of Se ("iDEFENSE Labs"
)