PT-2002-2663 · Imatix · Imatix Xitami
Published
2002-12-31
·
Updated
2008-09-05
·
CVE-2002-1942
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Imatix Xitami version 2.5 b5
Description
The issue allows remote attackers to cause a denial of service, resulting in a crash, by establishing a large number of concurrent sessions that take advantage of improperly terminated Keep-Alive connections.
Recommendations
For Imatix Xitami version 2.5 b5, consider restricting the number of concurrent sessions to minimize the risk of exploitation. As a temporary workaround, implement measures to limit the impact of denial-of-service attacks, such as configuring connection timeouts or limiting the number of connections from a single IP address. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Imatix Xitami