Mod_Survey SYSBASE磁盘资源消耗拒绝服务漏洞

漏洞信息详情

Mod_Survey SYSBASE磁盘资源消耗拒绝服务漏洞

漏洞简介

Mod_survey 3.0.0到3.0.15-pre6版本在创建survey的子目录前不检查其是否存在,远程攻击者可以利用该漏洞导致服务拒绝(磁盘消耗以及可能还会引起崩溃)。

漏洞公告

The vendor has released Mod_Survey 3.0.15-stable to address this issue. An updated ‘Document.pm’ file has also be released which can be used to replace the file in the ‘Survey’ subdirectory for Mod_Survey 3.0.14 through 3.0.14e. Users are advised to upgrade as soon as possible.
mod_survey mod_survey 3.0

mod_survey mod_survey 3.0.1

mod_survey mod_survey 3.0.10

mod_survey mod_survey 3.0.11

mod_survey mod_survey 3.0.12

mod_survey mod_survey 3.0.13

mod_survey mod_survey 3.0.14 e

mod_survey mod_survey 3.0.14 d

mod_survey mod_survey 3.0.14

mod_survey mod_survey 3.0.15 -pre2

mod_survey mod_survey 3.0.15 -pre5

mod_survey mod_survey 3.0.15 -pre3

mod_survey mod_survey 3.0.15 -pre4

mod_survey mod_survey 3.0.15 -pre6

mod_survey mod_survey 3.0.15 -pre1

mod_survey mod_survey 3.0.2

mod_survey mod_survey 3.0.3

mod_survey mod_survey 3.0.4

mod_survey mod_survey 3.0.5

mod_survey mod_survey 3.0.6

mod_survey mod_survey 3.0.7

mod_survey mod_survey 3.0.8

mod_survey mod_survey 3.0.9

参考网址

来源: BID
名称: 7498
链接:http://www.securityfocus.com/bid/7498

来源: XF
名称: modsurvey-nonexistent-survey-dos(11861)
链接:http://xforce.iss.net/xforce/xfdb/11861

来源: gathering.itm.mh.se
链接:http://gathering.itm.mh.se/modsurvey/SA20030504.txt

来源: BUGTRAQ
名称: 20030504 Mod_Survey SYSBASE vulnerability
链接:http://archives.neohapsis.com/archives/bugtraq/2003-05/0058.html

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享