PT-2005-2030 · Stalker · Communigate Pro
Published
2005-04-07
·
Updated
2017-07-11
·
CVE-2005-1007
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Communigate Pro versions prior to 4.3c3
Description
The issue is related to an unspecified error in the LIST module when handling certain multipart messages, allowing remote attackers to cause a denial of service (server crash). This can be achieved by sending a specially crafted request.
Recommendations
For versions prior to 4.3c3, update to version 4.3c3 or later to resolve the issue. As a temporary workaround, consider restricting access to the LIST module to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Communigate Pro