PT-2007-2820 · Astrocam · Astrocam

Publicado

2007-03-13

·

Atualizado

2011-03-08

·

CVE-2007-1426

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions AstroCam versions 2.0.0 through 2.6.5
Description The issue allows remote attackers to cause a denial of service, resulting in daemon shutdown. This is achieved by sending requests with a large amount of data in the a variable, which fills up the message queue.
Recommendations For AstroCam versions 2.0.0 through 2.6.5, consider restricting access to the web interface to minimize the risk of exploitation. As a temporary workaround, limit the amount of data that can be sent in the a variable to prevent the message queue from being filled up. At the moment, there is no information about a newer version that contains a fix for this issue.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2007-1426

Produtos afetados

Astrocam