Vulnerabilities > CVE-2003-0276 - Denial Of Service vulnerability in PI3 Pi3Web 2.0.1

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
pi3
nessus
exploit available

Summary

Buffer overflow in Pi3Web 2.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a GET request with a large number of / characters.

Vulnerable Configurations

Part Description Count
Application
Pi3
1

Exploit-Db

  • descriptionPi3Web 2.0.1 Denial of Service - Proof of Concept. CVE-2003-0276. Dos exploit for windows platform
    idEDB-ID:22
    last seen2016-01-31
    modified2003-04-29
    published2003-04-29
    reporteraT4r
    sourcehttps://www.exploit-db.com/download/22/
    titlePi3Web 2.0.1 - Denial of Service - Proof of Concept
  • descriptionPi3Web 2.0.1 Malformed GET Request Denial Of Service Vulnerability. CVE-2003-0276. Dos exploit for windows platform
    idEDB-ID:22587
    last seen2016-02-02
    modified2003-04-26
    published2003-04-26
    reporterAngelo Rosiello
    sourcehttps://www.exploit-db.com/download/22587/
    titlePi3Web 2.0.1 Malformed GET Request Denial of Service Vulnerability

Nessus

NASL familyWeb Servers
NASL idPI3WEB_DOS2.NASL
descriptionThe remote Pi3Web web server may crash when it is sent a malformed request, like : GET /</?SortName=A This issue may allow the execution of arbitrary code.
last seen2020-06-01
modified2020-06-02
plugin id11695
published2003-06-03
reporterThis script is Copyright (C) 2003-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/11695
titlePi3Web Malformed GET Request Remote Overflow