Vulnerabilities > CVE-2007-0138 - Denial-Of-Service vulnerability in Fersch Formbankserver 1.9

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
fersch
exploit available

Summary

formbankcgi.exe in Fersch Formbankserver 1.9, when the PATH_INFO begins with (1) AbfrageForm or (2) EingabeForm, allows remote attackers to cause a denial of service (daemon crash) via multiple requests containing many /../ sequences in the Name parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

Vulnerable Configurations

Part Description Count
Application
Fersch
1

Exploit-Db

descriptionFormbankserver 1.9 (Name) Remote Denial of Service Exploit. CVE-2006-6910,CVE-2007-0138. Dos exploit for windows platform
fileexploits/windows/dos/3056.pl
idEDB-ID:3056
last seen2016-01-31
modified2006-12-31
platformwindows
port
published2006-12-31
reporterBl0od3r
sourcehttps://www.exploit-db.com/download/3056/
titleFormbankserver 1.9 Name Remote Denial of Service Exploit
typedos