Compaq Web-Based Management Agent - Access Violation Denial of Service

EDB-ID:

22823

CVE:

N/A


Author:

Ian Vitek

Type:

dos


Platform:

Windows

Date:

2003-06-23


source: https://www.securityfocus.com/bid/8015/info

Compaq Web-Based Management Agent has been reported prone to a remote denial of service vulnerability when handling malformed GET requests. The resulting error reports an access violation, effectively causing the service to crash. A remote attacker could exploit this issue to deny agent services to legitimate users.

GET /<!.FunctionContentType=(About 250 AAAAA:s)> HTTP/1.0