PT-2006-7452 · Aidex · Aidex Mini-Webserver

Shinnai

·

Publicado

2006-12-31

·

Atualizado

2017-10-19

·

CVE-2006-6855

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: AIDeX Mini-WebServer version 1.1 early release 3
Description: The issue allows remote attackers to cause a denial of service, resulting in a daemon crash, via a flood of HTTP GET requests. This might be related to the display of HTTP log data by the GUI.
Recommendations: For AIDeX Mini-WebServer version 1.1 early release 3, consider implementing rate limiting on HTTP GET requests to mitigate the risk of denial of service attacks. Additionally, restricting access to the GUI's HTTP log data display may help minimize the impact of this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-6855

Produtos afetados

Aidex Mini-Webserver