PT-2006-7452 · Aidex · Aidex Mini-Webserver

Shinnai

·

Published

2006-12-31

·

Updated

2017-10-19

·

CVE-2006-6855

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: AIDeX Mini-WebServer version 1.1 early release 3
Description: The issue allows remote attackers to cause a denial of service, resulting in a daemon crash, via a flood of HTTP GET requests. This might be related to the display of HTTP log data by the GUI.
Recommendations: For AIDeX Mini-WebServer version 1.1 early release 3, consider implementing rate limiting on HTTP GET requests to mitigate the risk of denial of service attacks. Additionally, restricting access to the GUI's HTTP log data display may help minimize the impact of this issue. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-6855

Affected Products

Aidex Mini-Webserver