Vulnerabilities > CVE-2002-1248 - Denial Of Service vulnerability in Northern Solutions Xeneo Web Server 2.0.759.6/2.1.0.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
northern-solutions
nessus
exploit available

Summary

Northern Solutions Xeneo Web Server 2.1.0.0, 2.0.759.6, and other versions before 2.1.5 allows remote attackers to cause a denial of service (crash) via a GET request for a "%" URI.

Exploit-Db

descriptionNorthern Solutions Xeneo Web Server 2.1/2.2 Denial Of Service Vulnerability. CVE-2002-1248. Dos exploit for windows platform
idEDB-ID:21982
last seen2016-02-02
modified2002-11-04
published2002-11-04
reporterTamer Sahin
sourcehttps://www.exploit-db.com/download/21982/
titleNorthern Solutions Xeneo Web Server 2.1/2.2 - Denial of Service Vulnerability

Nessus

NASL familyWeb Servers
NASL idXENEO_PERCENT_DOS.NASL
descriptionThe remote host is running a vulnerable version of the Xeneo web server. It is possible to crash the web server by requesting a malformed URL ending with /%A or /%.
last seen2020-06-01
modified2020-06-02
plugin id11546
published2003-04-23
reporterThis script is Copyright (C) 2003-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/11546
titleXeneo Web Server %A Request Remote DoS