漏洞信息详情
Essentia Web Server超长URL缓冲区溢出漏洞
- CNNVD编号:CNNVD-200206-068
- 危害等级: 高危
- CVE编号:
CVE-2002-0313
- 漏洞类型:
缓冲区溢出
- 发布时间:
2002-06-25
- 威胁类型:
远程
- 更新时间:
2005-05-13
- 厂 商:
essen - 漏洞来源:
.’);”>This vulnerability… -
漏洞简介
Essentia Web Server 2.1版本存在缓冲区溢出漏洞。远程攻击者借助超长URL导致服务拒绝且可能执行任意代码。
漏洞公告
The vendor has released an update.
Essen Essentia Web Server 2.1
-
Essen Essentia.exe
http://www.essencomp.com/Products/Essentia/Essentia.exe
参考网址
来源: BID
名称: 4159
链接:http://www.securityfocus.com/bid/4159
来源: XF
名称: essentia-server-long-request-dos(8249)
链接:http://www.iss.net/security_center/static/8249.php
来源: BUGTRAQ
名称: 20020226 SecurityOffice Security Advisory:// Essentia Web Server Vulnerabilities (Vendor Patch)
链接:http://online.securityfocus.com/archive/1/258365
来源: BUGTRAQ
名称: 20020221 SecurityOffice Security Advisory:// Essentia Web Server DoS Vulnerability
链接:http://marc.theaimsgroup.com/?l=bugtraq&m=101440530023617&w=2
来源: FULLDISC
名称: 20030704 Essentia Web Server 2.12 (Linux)
链接:http://lists.grok.org.uk/pipermail/full-disclosure/2003-July/006231.html