5
CVSSv2

CVE-2001-0558

Published: 14/08/2001 Updated: 10/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

T. Hauck Jana Webserver 2.01 beta 1 and previous versions allows a remote malicious user to create a denial of service via a URL request which includes a MS-DOS device name (i.e. GET /aux HTTP/1.0).

Vulnerable Product Search on Vulmon Subscribe to Product

t. hauck jana web server 2.0b2

t. hauck jana web server 2.0beta1

t. hauck jana web server 1.45

t. hauck jana web server 1.46

Exploits

source: wwwsecurityfocuscom/bid/2704/info Versions of Jana Server are vulnerable to a denial of service attack It is possible to remotely crash a system running Jana Server by submitting a URL request which specifies an MS-DOS devicename A hard reboot of the exploited server will be required to restore web services wwwexamplecom/ ...