PT-2001-2212 · Aol · Aolserver

Publicado

2001-08-31

·

Atualizado

2017-10-10

·

CVE-2001-1067

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions AOLserver version 3.0
Description The issue allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via an HTTP request with a long Authorization header.
Recommendations For AOLserver version 3.0, consider restricting the length of the Authorization header in HTTP requests to prevent exploitation until a patch is available.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2001-1067

Produtos afetados

Aolserver