Vulnerabilities > CVE-2001-0460 - Denial-Of-Service vulnerability in Baltimore Technologies Websweeper 4.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
baltimore-technologies
exploit available

Summary

Websweeper 4.0 does not limit the length of certain HTTP headers, which allows remote attackers to cause a denial of service (memory exhaustion) via an extremely large HTTP Referrer: header.

Vulnerable Configurations

Part Description Count
OS
Baltimore_Technologies
1

Exploit-Db

descriptionBaltimore Technologies WEBsweeper 4.0 DoS Vulnerability. CVE-2001-0460. Dos exploit for windows platform
idEDB-ID:20681
last seen2016-02-02
modified2001-01-22
published2001-01-22
reporterhonoriak
sourcehttps://www.exploit-db.com/download/20681/
titleBaltimore Technologies WEBsweeper 4.0 DoS Vulnerability