PT-2008-6305 · Myserver · Myserver
Shinnai
·
Published
2008-11-18
·
Updated
2017-09-29
·
CVE-2008-5160
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
MyServer version 0.8.11
Description
The issue allows remote attackers to cause a denial of service, resulting in a daemon crash, by sending multiple invalid requests using HTTP methods such as GET, DELETE, OPTIONS, and possibly others. This is related to a "204 No Content error."
Recommendations
For MyServer version 0.8.11, consider restricting access to the server to minimize the risk of exploitation until a patch is available. As a temporary workaround, avoid using the HTTP methods GET, DELETE, and OPTIONS in requests to the server.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Myserver