Vulnerabilities > CVE-2000-0064 - Unspecified vulnerability in Nortel Contivity 1.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
nortel
nessus

Summary

cgiproc CGI script in Nortel Contivity HTTP server allows remote attackers to cause a denial of service via a malformed URL that includes shell metacharacters.

Vulnerable Configurations

Part Description Count
Hardware
Nortel
1

Nessus

NASL familyWeb Servers
NASL idNORTEL_CGIPROC_DOS.NASL
descriptionIt is possible to crash the remote host by doing the HTTP request : GET /cgi/cgiproc?$
last seen2020-06-01
modified2020-06-02
plugin id10160
published2000-01-20
reporterThis script is Copyright (C) 2000-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/10160
titleNortel Contivity HTTP Server cgiproc Special Character DoS