PT-2004-3221 · Vizer · Vizer Web Server
Published
2004-12-31
·
Updated
2017-07-11
·
CVE-2004-2327
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions:
Vizer Web Server version 1.9.1
Description:
The issue allows remote attackers to cause a denial of service, resulting in a crash, via multiple types of malformed requests. These include requests without the
GET method, GET requests without the HTTP protocol, or long GET requests.Recommendations:
For Vizer Web Server version 1.9.1, consider implementing request validation to prevent malformed requests from causing a denial of service. As a temporary workaround, restrict access to the server to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Vizer Web Server