The web interface for Crystal Reports allows remote attackers to cause a denial of service (disk exhaustion) by repeatedly requesting reports without retrieving the associated image files, which are not cleared from the image file folder.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=108360413811017&w=2 | mailing list |
http://marc.info/?l=bugtraq&m=108671836127360&w=2 | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/16046 | vdb entry |