CVE-2002-2421

acWEB 1.14 allows remote attackers to cause a denial of service (crash) via an HTTP request for a MS-DOS device name such as COM2.
Configurations

Configuration 1 (hide)

cpe:2.3:a:andrey_cherezov:acweb:1.14:*:*:*:*:*:*:*

History

20 Nov 2024, 23:43

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2002-09/0304.html - Exploit () http://archives.neohapsis.com/archives/bugtraq/2002-09/0304.html - Exploit
References () http://www.iss.net/security_center/static/10190.php - () http://www.iss.net/security_center/static/10190.php -

Information

Published : 2002-12-31 05:00

Updated : 2024-11-20 23:43


NVD link : CVE-2002-2421

Mitre link : CVE-2002-2421

CVE.ORG link : CVE-2002-2421


JSON object : View

Products Affected

andrey_cherezov

  • acweb
CWE
CWE-20

Improper Input Validation