The web server in Certec atvise webMI2ADS (aka webMI) before 2.0.2 does not properly check return values from functions, which allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted HTTP request.
Link | Tags |
---|---|
http://www.us-cert.gov/control_systems/pdf/ICSA-12-102-01.pdf | us government resource |