PT-2001-1781 · Alt N Technologies · Mdaemon

Published

2001-07-27

·

Updated

2017-12-19

·

CVE-2001-0583

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: Alt-N Technologies MDaemon version 3.5.4
Description: The issue allows a remote attacker to create a denial of service. This can be achieved via the URL request of a MS-DOS device, such as GET /aux, to either the Worldclient service at port 3000 or the Webconfig service at port 3001.
Recommendations: For Alt-N Technologies MDaemon version 3.5.4, consider restricting access to the Worldclient service at port 3000 and the Webconfig service at port 3001 to minimize the risk of exploitation. Avoid using URL requests of MS-DOS devices, such as GET /aux, until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2001-0583

Affected Products

Mdaemon