Vulnerabilities > CVE-2014-9708 - NULL Pointer Dereference vulnerability in multiple products
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Embedthis Appweb before 4.6.6 and 5.x before 5.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via a Range header with an empty value, as demonstrated by "Range: x=,".
Vulnerable Configurations
Common Weakness Enumeration (CWE)
Nessus
NASL family | Denial of Service |
NASL id | PALO_ALTO_PAN-SA-2016-0027_REMOTE.NASL |
description | The Palo Alto Networks PAN-OS running on the remote host is affected by a NULL pointer dereference flaw in the web management interface, specifically in the parseRange() function within file rx.c, when handling HTTP requests involving a Range header with an empty value. An unauthenticated, remote attacker can exploit this, via a specially crafted request, to cause the Appweb process for the management interface to terminate, resulting in a denial of service condition. Note that PAN-OS is reportedly affected by other vulnerabilities as well; however, Nessus has not tested for these. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 96314 |
published | 2017-01-05 |
reporter | This script is Copyright (C) 2017-2019 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/96314 |
title | Palo Alto Networks PAN-OS Management Interface Remote DoS (PAN-SA-2016-0027) |
code |
|
Packetstorm
data source | https://packetstormsecurity.com/files/download/131157/appweb-dos.txt |
id | PACKETSTORM:131157 |
last seen | 2016-12-05 |
published | 2015-03-28 |
reporter | Matthew Daley |
source | https://packetstormsecurity.com/files/131157/Appweb-Web-Server-Denial-Of-Service.html |
title | Appweb Web Server Denial Of Service |
References
- http://packetstormsecurity.com/files/131157/Appweb-Web-Server-Denial-Of-Service.html
- http://packetstormsecurity.com/files/131157/Appweb-Web-Server-Denial-Of-Service.html
- http://seclists.org/fulldisclosure/2015/Apr/19
- http://seclists.org/fulldisclosure/2015/Apr/19
- http://seclists.org/fulldisclosure/2015/Apr/19
- http://seclists.org/fulldisclosure/2015/Apr/19
- http://seclists.org/fulldisclosure/2015/Mar/158
- http://seclists.org/fulldisclosure/2015/Mar/158
- http://seclists.org/fulldisclosure/2015/Mar/158
- http://seclists.org/fulldisclosure/2015/Mar/158
- http://www.openwall.com/lists/oss-security/2015/03/28/2
- http://www.openwall.com/lists/oss-security/2015/03/28/2
- http://www.openwall.com/lists/oss-security/2015/04/06/2
- http://www.openwall.com/lists/oss-security/2015/04/06/2
- http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html
- http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html
- http://www.securityfocus.com/archive/1/535028/100/0/threaded
- http://www.securityfocus.com/archive/1/535028/100/0/threaded
- http://www.securityfocus.com/archive/1/archive/1/535028/100/1400/threaded
- http://www.securityfocus.com/archive/1/archive/1/535028/100/1400/threaded
- http://www.securityfocus.com/bid/73407
- http://www.securityfocus.com/bid/73407
- http://www.securitytracker.com/id/1037007
- http://www.securitytracker.com/id/1037007
- https://github.com/embedthis/appweb/commit/7e6a925f5e86a19a7934a94bbd6959101d0b84eb#diff-7ca4d62c70220e0e226e7beac90c95d9L17348
- https://github.com/embedthis/appweb/commit/7e6a925f5e86a19a7934a94bbd6959101d0b84eb#diff-7ca4d62c70220e0e226e7beac90c95d9L17348
- https://github.com/embedthis/appweb/issues/413
- https://github.com/embedthis/appweb/issues/413
- https://security.paloaltonetworks.com/CVE-2014-9708
- https://security.paloaltonetworks.com/CVE-2014-9708
- https://supportportal.juniper.net/s/article/2021-07-Security-Bulletin-Junos-OS-Multiple-J-Web-vulnerabilities-resolved?language=en_US
- https://supportportal.juniper.net/s/article/2021-07-Security-Bulletin-Junos-OS-Multiple-J-Web-vulnerabilities-resolved?language=en_US