5
CVSSv2

CVE-2000-0626

Published: 18/07/2000 Updated: 10/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 510
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Buffer overflow in Alibaba web server allows remote malicious users to cause a denial of service via a long GET request.

Vulnerable Product Search on Vulmon Subscribe to Product

computer software manufaktur alibaba 2.0

Exploits

source: wwwsecurityfocuscom/bid/1485/info Alibaba Web Server fails to filter piped commands when executing cgi-scripts This can be used to execute commands with the privileges of the web server process on a target machine victim/cgi-bin/post32exe|echo%20>c:\texttxt victim/cgi-bin/lsindex2bat|dir%20c:\[dir] ...
source: wwwsecurityfocuscom/bid/1482/info It is possible for a user to initiate a denial of service against Alibaba Web Server Sending an unusually long GET request (> 8000 bytes) to the server will cause the service to stop responding A restart of the server service is required in order to gain normal functionality /* Descriptio ...