Appian Business Process Management Suite Remote Denial of Service Vulnerability
BID:26913
Info
Appian Business Process Management Suite Remote Denial of Service Vulnerability
| Bugtraq ID: | 26913 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2007-6509 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 17 2007 12:00AM |
| Updated: | May 07 2015 05:34PM |
| Credit: | Chris Castaldo discovered this issue using the SAINT vulnerability scanner. |
| Vulnerable: |
Appian Business Process Management Suite (BPMS) 5.6 SP1 |
| Not Vulnerable: | |
Discussion
Appian Business Process Management Suite Remote Denial of Service Vulnerability
Appian Business Process Management Suite (BPMS) is prone to a remote denial-of-service vulnerability because it fails to handle specially crafted packets.
Successfully exploiting this issue allows remote attackers to crash the affected application, denying further service to legitimate users.
This issue affects Appian BPMS 5.6 SP1; other versions may be vulnerable as well.
Appian Business Process Management Suite (BPMS) is prone to a remote denial-of-service vulnerability because it fails to handle specially crafted packets.
Successfully exploiting this issue allows remote attackers to crash the affected application, denying further service to legitimate users.
This issue affects Appian BPMS 5.6 SP1; other versions may be vulnerable as well.
Exploit / POC
Appian Business Process Management Suite Remote Denial of Service Vulnerability
A proof of concept is available:
A proof of concept is available:
Solution / Fix
Appian Business Process Management Suite Remote Denial of Service Vulnerability
Solution:
Reports indicate that the vendor released a patch to address this issue, but Symantec was unable to verify this information. Please contact the vendor for more information.
Solution:
Reports indicate that the vendor released a patch to address this issue, but Symantec was unable to verify this information. Please contact the vendor for more information.
References
Appian Business Process Management Suite Remote Denial of Service Vulnerability
References:
References: