Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.803080
Categoría:Denial of Service
Título:Firefly MediaServer HTTP Header Multiple DoS Vulnerabilities
Resumen:Firefly MediaServer is prone to multiple denial of service vulnerabilities.
Descripción:Summary:
Firefly MediaServer is prone to multiple denial of service vulnerabilities.

Vulnerability Insight:
The flaw is due to multiple NULL pointer dereference errors
within the 'firefly.exe' when processing requests with malformed 'CONNECTION',
'ACCEPT-LANGUGE', 'USER-AGENT', and 'HOST' HTTP header value or malformed HTTP
protocol version.

Vulnerability Impact:
Successful exploitation will allow attackers to cause the server
to crash, denying service to legitimate users.

Affected Software/OS:
Firefly MediaServer version 1.0.0.1359 and prior.

Solution:
No known solution was made available for at least one year
since the disclosure of this vulnerability. Likely none will be provided anymore. General solution
options are to upgrade to a newer release, disable respective features, remove the product or
replace the product by another one.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2012-5875
Bugtraq: 20121219 Firefly MediaServer Multiple Remote DoS Vulnerabilities (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2012-12/0115.html
http://www.exploit-db.com/exploits/23574
https://www.htbridge.com/advisory/HTB23129
http://www.securitytracker.com/id?1027917
CopyrightCopyright (C) 2012 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.