Vulnerabilities > CVE-2006-1275 - Resource Management Errors vulnerability in GGZ Gaming Zone GGZ Gaming Zone 0.0.12
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
GGZ Gaming Zone 0.0.12 allows remote attackers to cause a denial of service (client disconnect) via inputs that produce malformed XML, including (1) trailing ' (apostrophe) character on the ID attribute in a PLAYER XML tag, (2) joining with a long ID attribute or non-trailing ' characters, which causes a <none> name to be assigned, and then disconnecting, or (3) a long CDATA message attribute, which prevents closing tags from being added to the string.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Common Weakness Enumeration (CWE)
Exploit-Db
description | GGZ Gaming Zone 0.0.12 Multiple Denial Of Service Vulnerabilities. CVE-2006-1275. Dos exploits for multiple platform |
id | EDB-ID:27421 |
last seen | 2016-02-03 |
modified | 2006-03-14 |
published | 2006-03-14 |
reporter | Luigi Auriemma |
source | https://www.exploit-db.com/download/27421/ |
title | GGZ Gaming Zone 0.0.12 - Multiple Denial of Service Vulnerabilities |
References
- http://aluigi.altervista.org/adv/ggzcdos-adv.txt
- http://aluigi.altervista.org/adv/ggzcdos-adv.txt
- http://secunia.com/advisories/19212
- http://secunia.com/advisories/19212
- http://www.osvdb.org/23848
- http://www.osvdb.org/23848
- http://www.securityfocus.com/bid/17094
- http://www.securityfocus.com/bid/17094
- http://www.vupen.com/english/advisories/2006/0935
- http://www.vupen.com/english/advisories/2006/0935
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25164
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25164