PT-2003-1298 · Netrisk · Netrisk
Published
2003-08-15
·
Updated
2017-07-11
·
CVE-2002-1566
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
netris versions prior to 0.52
Description
The issue allows remote attackers to cause a denial of service, resulting in a crash, by sending a long string to port 9284 when the software is run with the -w option.
Recommendations
For versions prior to 0.52, avoid using the -w option until a fix is available. As a temporary workaround, consider restricting access to port 9284 to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Netrisk