Vulnerabilities > CVE-2004-2646 - Denial Of Service vulnerability in Multiple Free Web Chat

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
reid-garner
exploit available

Summary

The addUser function in UserManager.java in Free Web Chat 2.0 allows remote attackers to cause a denial of service (uncaught NullPointerException) via unknown attack vectors that cause the usrName variable to be null.

Vulnerable Configurations

Part Description Count
Application
Reid_Garner
1

Exploit-Db

descriptionFree Web Chat Initial Release UserManager.java Null Pointer DoS. CVE-2004-2646. Dos exploits for multiple platform
idEDB-ID:24351
last seen2016-02-02
modified2004-08-04
published2004-08-04
reporterDonato Ferrante
sourcehttps://www.exploit-db.com/download/24351/
titleFree Web Chat Initial Release UserManager.java Null Pointer DoS