TimeTools NTP Time Server Syslog Monitor Remote Denial of Service Vulnerability
BID:33290
Info
TimeTools NTP Time Server Syslog Monitor Remote Denial of Service Vulnerability
| Bugtraq ID: | 33290 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 15 2009 12:00AM |
| Updated: | Jan 17 2009 12:42AM |
| Credit: | Rob Kraus, princeofnigeria (PoN) |
| Vulnerable: |
TimeTools NTP Time Server Syslog Monitor 1.0 |
| Not Vulnerable: | |
Discussion
TimeTools NTP Time Server Syslog Monitor Remote Denial of Service Vulnerability
TimeTools NTP Time Server Syslog Monitor is prone to a denial-of-service vulnerability because the application fails to adequately sanitize user-supplied input.
An attacker can exploit this issue to crash the affected application, denying service to legitimate users.
TimeTools NTP Time Server Syslog Monitor is prone to a denial-of-service vulnerability because the application fails to adequately sanitize user-supplied input.
An attacker can exploit this issue to crash the affected application, denying service to legitimate users.
Exploit / POC
TimeTools NTP Time Server Syslog Monitor Remote Denial of Service Vulnerability
Attackers can exploit this issue by using readily available network tools.
Attackers can exploit this issue by using readily available network tools.
Solution / Fix
TimeTools NTP Time Server Syslog Monitor Remote Denial of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
TimeTools NTP Time Server Syslog Monitor Remote Denial of Service Vulnerability
References:
References: