PT-2002-2148 · Analogx · Analog
Published
2002-10-11
·
Updated
2008-09-05
·
CVE-2002-1154
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions:
Analog versions prior to 5.23
Description:
The issue allows remote attackers to cause a denial of service by consuming disk space, resulting in the web server error log being filled. This is achieved by using the PROGRESSFREQ progress update command more frequently than intended.
Recommendations:
For versions prior to 5.23, restrict access to the PROGRESSFREQ command to prevent remote attackers from causing a denial of service.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Analog