Vulnerabilities > CVE-2007-3956 - Remote Denial Of Service vulnerability in Teamspeak web Server 2.0

047910
CVSS 7.8 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
network
low complexity
microsoft
teamspeak
exploit available

Summary

TeamSpeak WebServer 2.0 for Windows does not validate parameter value lengths and does not expire TCP sessions, which allows remote attackers to cause a denial of service (CPU and memory consumption) via long username and password parameters in a request to login.tscmd on TCP port 14534.

Vulnerable Configurations

Part Description Count
OS
Microsoft
1
Application
Teamspeak
1

Exploit-Db

descriptionTeamSpeak 2.0 (Windows Release) Remote Denial of Service Exploit. CVE-2007-3956. Dos exploit for windows platform
fileexploits/windows/dos/4205.pl
idEDB-ID:4205
last seen2016-01-31
modified2007-07-20
platformwindows
port
published2007-07-20
reporterYAG KOHHA
sourcehttps://www.exploit-db.com/download/4205/
titleTeamSpeak 2.0 Windows Release Remote Denial of Service Exploit
typedos