7.5
CVSSv2

CVE-2002-0142

Published: 25/03/2002 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

CGI handler in John Roy Pi3Web for Windows 2.0 beta 1 and 2 allows remote malicious users to cause a denial of service (crash) via a series of requests whose physical path is exactly 260 characters long and ends in a series of . (dot) characters.

Vulnerable Product Search on Vulmon Subscribe to Product

pi3 pi3web 2.0

Exploits

source: wwwsecurityfocuscom/bid/3866/info John Roy Pi3Web is a standard web server which includes CGI and ISAPI support Pi3Web uses multithreading to handle system requests Pi3Web is available for Windows, Linux and Solaris Due to a buffer overflow vulnerability in John Roy Pi3Web web server, it is possbile for an attacker to cause th ...