The web interface in AstroCam 2.0.0 up to and including 2.6.5 allows remote malicious users to cause a denial of service (daemon shutdown) via requests that contain a large amount of data in the "a" variable, which "fills up the message queue."
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
astrocam astrocam 2.6.0 |
||
astrocam astrocam 2.6.3 |
||
astrocam astrocam 2.6.4 |
||
astrocam astrocam 2.6.1 |
||
astrocam astrocam 2.6.2 |
||
astrocam astrocam 2.6.5 |