LionMax Software WWW File Share Pro 2.4/2.6 - Remote Denial of Service

EDB-ID:

23538

CVE:

N/A


Author:

dr_insane

Type:

dos


Platform:

Windows

Date:

2004-01-12


Become a Certified Penetration Tester

Enroll in Penetration Testing with Kali Linux and pass the exam to become an Offensive Security Certified Professional (OSCP). All new content for 2020.

GET CERTIFIED

source: https://www.securityfocus.com/bid/9398/info

It has been reported that WWW File Share Pro HTTP server may be prone to a remote denial of service condition. Successful exploitation of this vulnerability may allow a remote attacker to cause the vulnerable server to crash or hang, affectively denying service to legitimate users.

WWW File Share Pro versions 2.46 and prior may be prone to this issue.

Update: This vulnerability was originally fixed in WWW File Share Pro version 2.48, however, a new report suggests that version 2.60 is vulnerable to a similar attack. This has not been confirmed at the moment but version 2.60 is being added as a vulnerable version.

http://www.example.com/AAA...[x3000]...AAA
http://www.example.com/AAA...[x5000]...AAA