7.5
CVSSv2

CVE-2002-1061

Published: 04/10/2002 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple buffer overflows in Thomas Hauck Jana Server 2.x up to and including 2.2.1, and 1.4.6 and previous versions, allow remote malicious users to cause a denial of service and possibly execute arbitrary code via (1) an HTTP GET request with a long major version number, (2) an HTTP GET request to the HTTP proxy on port 3128 with a long major version number, (3) a long OK reply from a POP3 server, and (4) a long SMTP server response.

Vulnerable Product Search on Vulmon Subscribe to Product

t. hauck jana web server 1.0

t. hauck jana web server 1.45

t. hauck jana web server 1.46

t. hauck jana web server 2.0_beta1

t. hauck jana web server 2.2.1

t. hauck jana web server 2.0

t. hauck jana web server 2.0_beta2