WebTrends Enterprise Reporting Server Negative Content Length DoS Vulnerability
BID:569
Info
WebTrends Enterprise Reporting Server Negative Content Length DoS Vulnerability
| Bugtraq ID: | 569 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Aug 08 1999 12:00AM |
| Updated: | Aug 08 1999 12:00AM |
| Credit: | Posted to Butraq August 8, 1999 by rpc <[email protected]>. |
| Vulnerable: |
WebTrends WebTrends Enterprise Reporting Server 1.5 |
| Not Vulnerable: | |
Discussion
WebTrends Enterprise Reporting Server Negative Content Length DoS Vulnerability
Specifying a negative content-length in a POST operation to the WebTrends Enterprise Reporting Server will crash the web server.
Specifying a negative content-length in a POST operation to the WebTrends Enterprise Reporting Server will crash the web server.
Exploit / POC
WebTrends Enterprise Reporting Server Negative Content Length DoS Vulnerability
x
x
Solution / Fix
WebTrends Enterprise Reporting Server Negative Content Length DoS Vulnerability
Solution:
WebTrends has been notified, and claim to be working on a patch. Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
WebTrends has been notified, and claim to be working on a patch. Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
WebTrends Enterprise Reporting Server Negative Content Length DoS Vulnerability
References:
References: