Michael Lamont Savant Web Server DoS Vulnerability
BID:2468
Info
Michael Lamont Savant Web Server DoS Vulnerability
| Bugtraq ID: | 2468 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 09 2001 12:00AM |
| Updated: | Mar 09 2001 12:00AM |
| Credit: | Discovered by Xatrix and posted to Bugtraq by Phiber <[email protected]> on March 9, 2001. |
| Vulnerable: |
Michael Lamont Savant WebServer 3.0 |
| Not Vulnerable: | |
Discussion
Michael Lamont Savant Web Server DoS Vulnerability
A denial of service condition exists in Michael Lamont Savant web server. Requesting a specially crafted URL composed of '%' characters could cause the server to stop responding.
A denial of service condition exists in Michael Lamont Savant web server. Requesting a specially crafted URL composed of '%' characters could cause the server to stop responding.
Exploit / POC
Michael Lamont Savant Web Server DoS Vulnerability
The following example has been provided by Phiber <[email protected]>:
www.target/%%%
The following example has been provided by Phiber <[email protected]>:
www.target/%%%
Solution / Fix
Michael Lamont Savant Web Server DoS Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Michael Lamont Savant Web Server DoS Vulnerability
References:
References: