PT-2002-2148 · Analogx · Analog

Publicado

2002-10-11

·

Atualizado

2008-09-05

·

CVE-2002-1154

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: Analog versions prior to 5.23
Description: The issue allows remote attackers to cause a denial of service by consuming disk space, resulting in the web server error log being filled. This is achieved by using the PROGRESSFREQ progress update command more frequently than intended.
Recommendations: For versions prior to 5.23, restrict access to the PROGRESSFREQ command to prevent remote attackers from causing a denial of service.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2002-1154

Produtos afetados

Analog