PT-2001-1781 · Alt N Technologies · Mdaemon
Published
2001-07-27
·
Updated
2017-12-19
·
CVE-2001-0583
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions:
Alt-N Technologies MDaemon version 3.5.4
Description:
The issue allows a remote attacker to create a denial of service. This can be achieved via the URL request of a MS-DOS device, such as
GET /aux, to either the Worldclient service at port 3000 or the Webconfig service at port 3001.Recommendations:
For Alt-N Technologies MDaemon version 3.5.4, consider restricting access to the Worldclient service at port 3000 and the Webconfig service at port 3001 to minimize the risk of exploitation. Avoid using URL requests of MS-DOS devices, such as
GET /aux, until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this issue.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mdaemon