My Web Server 1.0.1/1.0.2 - GET Denial of Service



EKU-ID: 27429 CVE: CVE-2002-1897;OSVDB-59775 OSVDB-ID:
Author: Marc Ruef Published: 2002-10-12 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/5954/info

My Web Server is a web server software package distributed and maintained by MyWebServer LLC. It is designed for the Microsoft Windows operating system.

It has been reported that My Web Server does not properly handle long requests. Because of this, a remote user placing a HTTP GET request of excessive length could cause the server to become unstable. In most cases, a long GET request causes the web server to crash, requiring a manual restart of the service.

http://www.example.com/AAA...(approx. Ax994)...AAA