PT-2007-7213 · Perforce · Perforce P4Web

Published

2007-12-20

·

Updated

2018-10-15

·

CVE-2007-6349

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Perforce P4Web versions 2006.2 and earlier
Description The issue allows remote attackers to cause a denial of service, specifically CPU consumption, via an HTTP request with an empty body and a Content-Length greater than 0.
Recommendations For Perforce P4Web versions 2006.2 and earlier, update to a version later than 2006.2 to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-6349

Affected Products

Perforce P4Web