TinyWeb 1.9 allows remote attackers to cause a denial of service (CPU consumption) via a ".%00." in an HTTP GET request to the cgi-bin directory.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/13402 | vdb entry |
http://www.securityfocus.com/bid/8810 | vdb entry exploit |
http://www.securiteam.com/windowsntfocus/6S0052K8LQ.html |