PT-2004-2409 · 602 · 602Lan Suite

Published

2004-12-31

·

Updated

2017-07-11

·

CVE-2004-1501

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions 602 Lan Suite versions 2004.0.04.0909 and earlier
Description The issue allows remote attackers to cause a denial of service by consuming CPU and memory resources. This is achieved by sending a POST request with a large Content-Length value and then disconnecting without sending the specified amount of data.
Recommendations For versions 2004.0.04.0909 and earlier, consider implementing measures to limit the impact of large Content-Length values in POST requests, such as restricting the maximum allowed value or implementing rate limiting to prevent excessive resource consumption.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-1501

Affected Products

602Lan Suite