Vulnerabilities > CVE-2006-2222 - Remote HTTP GET Denial Of Service vulnerability in Norz Zawhttpd 0.8.23

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
norz
exploit available

Summary

Buffer overflow in zawhttpd 0.8.23, and possibly previous versions, allows remote attackers to cause a denial of service (daemon crash) via a request for a URI composed of several "\" (backslash) characters.

Vulnerable Configurations

Part Description Count
Application
Norz
1

Exploit-Db

descriptionzawhttpd <= 0.8.23 (GET) Remote Buffer Overflow DoS. CVE-2006-2222. Dos exploit for linux platform
idEDB-ID:1746
last seen2016-01-31
modified2006-05-04
published2006-05-04
reporterKamil Sienicki
sourcehttps://www.exploit-db.com/download/1746/
titlezawhttpd <= 0.8.23 GET Remote Buffer Overflow DoS