Vulnerabilities > CVE-2004-1973 - Remote Denial Of Service vulnerability in Digi WWW Server Compieuw
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
DiGi Web Server allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request that contains a large number of / (slash) characters, which consumes resources when DiGi converts the slashes to \ (backslash) characters.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
Exploit-Db
description | DiGi WWW Server 1 Remote Denial Of Service Vulnerability. CVE-2004-1973. Dos exploits for multiple platform |
id | EDB-ID:24066 |
last seen | 2016-02-02 |
modified | 2004-04-27 |
published | 2004-04-27 |
reporter | Donato Ferrante |
source | https://www.exploit-db.com/download/24066/ |
title | DiGi WWW Server 1 - Remote Denial of Service Vulnerability |
References
- http://marc.info/?l=bugtraq&m=108311170018203&w=2
- http://secunia.com/advisories/11490
- http://securitytracker.com/alerts/2004/Apr/1009957.html
- http://sourceforge.net/project/shownotes.php?release_id=234261
- http://www.autistici.org/fdonato/advisory/DiGiWwwServerC1-adv.txt
- http://www.osvdb.org/5702
- http://www.securityfocus.com/bid/10228
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15987