Savant Web Server Page Redirect Denial Of Service Vulnerability
BID:8712
Info
Savant Web Server Page Redirect Denial Of Service Vulnerability
| Bugtraq ID: | 8712 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 26 2003 12:00AM |
| Updated: | Sep 26 2003 12:00AM |
| Credit: | Discovery is credited to Phuong Nguyen. |
| Vulnerable: |
Savant Savant Webserver 3.1 |
| Not Vulnerable: | |
Discussion
Savant Web Server Page Redirect Denial Of Service Vulnerability
Savant Web Server is prone to a denial of service vulnerability. The server reportedly goes into an infinite loop upon receipt of a specially crafted HTTP GET request that causes the server to repeatedly redirect to the default page.
This issue may be similar in nature to the vulnerability described in BID 2468.
Savant Web Server is prone to a denial of service vulnerability. The server reportedly goes into an infinite loop upon receipt of a specially crafted HTTP GET request that causes the server to repeatedly redirect to the default page.
This issue may be similar in nature to the vulnerability described in BID 2468.
Exploit / POC
Savant Web Server Page Redirect Denial Of Service Vulnerability
This issue may be exploited with a web browser. The following example was submitted:
http://www.example.com/%x
This issue may be exploited with a web browser. The following example was submitted:
http://www.example.com/%x