Vulnerabilities > CVE-2002-0748 - Denial of Service vulnerability in National Instruments Labview 5.1.1/6.0/6.1
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
LabVIEW Web Server 5.1.1 through 6.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET request that ends in two newline characters, instead of the expected carriage return/newline combinations.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
Exploit-Db
description | National Instruments LabVIEW 5.1.1/6.0/6.1 HTTP Request Denial of Service Vulnerability. CVE-2002-0748. Dos exploits for multiple platform |
id | EDB-ID:21413 |
last seen | 2016-02-02 |
modified | 2002-04-19 |
published | 2002-04-19 |
reporter | Steve Zins |
source | https://www.exploit-db.com/download/21413/ |
title | National Instruments LabVIEW 5.1.1/6.0/6.1 HTTP Request Denial of Service Vulnerability |
Nessus
NASL family | Web Servers |
NASL id | LABVIEW_WWW_DOS.NASL |
description | It was possible to kill the web server by sending a request that ends with two LF characters instead of the normal sequence CR LF CR LF (CR = carriage return, LF = line feed). An attacker can exploit this vulnerability to make this server and all LabView applications crash. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11063 |
published | 2002-08-06 |
reporter | This script is Copyright (C) 2002-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/11063 |
title | LabVIEW Web Server HTTP Get Newline DoS |
code |
|