CVE-2003-1569

GoAhead WebServer before 2.1.5 on Windows 95, 98, and ME allows remote attackers to cause a denial of service (daemon crash) via an HTTP request with a (1) con, (2) nul, (3) clock$, or (4) config$ device name in a path component, different vectors than CVE-2001-0385.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:goahead:goahead_webserver:*:*:*:*:*:*:*:*
cpe:2.3:a:goahead:goahead_webserver:2.0:*:*:*:*:*:*:*
cpe:2.3:a:goahead:goahead_webserver:2.1:*:*:*:*:*:*:*
cpe:2.3:a:goahead:goahead_webserver:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:goahead:goahead_webserver:2.1.2:*:*:*:*:*:*:*
cpe:2.3:a:goahead:goahead_webserver:2.1.3:*:*:*:*:*:*:*
OR cpe:2.3:o:microsoft:windows_95:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_98:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_me:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2009-02-06 19:30

Updated : 2024-02-04 17:33


NVD link : CVE-2003-1569

Mitre link : CVE-2003-1569

CVE.ORG link : CVE-2003-1569


JSON object : View

Products Affected

microsoft

  • windows_95
  • windows_me
  • windows_98

goahead

  • goahead_webserver
CWE
CWE-20

Improper Input Validation