8.5
CVSSv2

CVE-2003-1364

Published: 31/12/2003 Updated: 29/07/2017
CVSS v2 Base Score: 8.5 | Impact Score: 7.8 | Exploitability Score: 10
VMScore: 855
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:C

Vulnerability Summary

Aprelium Technologies Abyss Web Server 1.1.2, and possibly other versions prior to 1.1.4, allows remote malicious users to cause a denial of service (crash) via an HTTP GET message with empty (1) Connection or (2) Range fields.

Vulnerable Product Search on Vulmon Subscribe to Product

aprelium technologies abyss web server 1.1.2

Exploits

source: wwwsecurityfocuscom/bid/7287/info A denial of service vulnerability has been reported for Abyss Web Server The vulnerability exists when Abyss attempts to parse certain incomplete HTTP headers GET / HTTP/10 Connection: GET / HTTP/10 Range: ...