Pi3Web web server 2.0.2 Beta 1, when the Directory Index is configured to use the "Name" column and sort using the column title as a hyperlink, allows remote attackers to cause a denial of service (crash) via a malformed URL to the web server, possibly involving a buffer overflow.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=105465813729100&w=2 | mailing list |
http://securitytracker.com/id?1006913 | vdb entry |
http://www.securityfocus.com/bid/7787 | exploit vdb entry patch vendor advisory |
http://marc.info/?l=bugtraq&m=105484265218325&w=2 | mailing list |