5
CVSSv2

CVE-2001-0647

Published: 06/08/2001 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Orange Web Server 2.1, based on GoAhead, allows a remote malicious user to perform a denial of service via an HTTP GET request that does not include the HTTP version.

Vulnerable Product Search on Vulmon Subscribe to Product

orange software orange web server 2.1

Exploits

source: wwwsecurityfocuscom/bid/2432/info A remote user can cause a denial-of-service condition in Orange Software Orange Web Server The attacker could submit a specially crafted GET request via a telnet connection to cause the server to crash A restart of the server is required to gain normal functionality echo "GET A" | telnet ta ...