Vulnerabilities > CVE-2000-0543 - Unspecified vulnerability in PGP Certificate Server 2.5/2.5.1

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
pgp
nessus

Summary

The command port for PGP Certificate Server 2.5.0 and 2.5.1 allows remote attackers to cause a denial of service if their hostname does not have a reverse DNS entry and they connect to port 4000.

Vulnerable Configurations

Part Description Count
Application
Pgp
2

Nessus

NASL familyDenial of Service
NASL idPGPCERT_DOS.NASL
descriptionIt was possible to make the remote PGP Cert Server crash by spoofing a TCP connection that seems to come from an unresolvable IP address. An attacker may use this flaw to prevent your PGP certificate server from working properly.
last seen2020-06-01
modified2020-06-02
plugin id10442
published2000-06-22
reporter(C) 2000-2019 John Lampe <[email protected]>
sourcehttps://www.tenable.com/plugins/nessus/10442
titleNAI PGP Certificate Server Unresolvable IP DoS