PT-2002-2148 · Analogx · Analog

Published

2002-10-11

·

Updated

2008-09-05

·

CVE-2002-1154

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: Analog versions prior to 5.23
Description: The issue allows remote attackers to cause a denial of service by consuming disk space, resulting in the web server error log being filled. This is achieved by using the PROGRESSFREQ progress update command more frequently than intended.
Recommendations: For versions prior to 5.23, restrict access to the PROGRESSFREQ command to prevent remote attackers from causing a denial of service.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-1154

Affected Products

Analog