PT-2007-2466 · Shemes.Com · Grabit
Published
2007-02-21
·
Updated
2017-07-29
·
CVE-2007-1038
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions:
Shemes.com Grabit version 1.5.3 and possibly earlier
Description:
The issue allows remote attackers to cause a denial of service, resulting in an application crash. This can be achieved by using a .nzb file with a subject field containing ';' (semicolon) characters.
Recommendations:
For version 1.5.3 and possibly earlier, avoid using .nzb files with subject fields containing ';' characters until a fix is available. As a temporary workaround, consider validating and sanitizing .nzb file contents before processing them to minimize the risk of application crash.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Grabit