CVE-2004-0799

Ipswitch WhatsUp Gold 8.03 - Denial of Service via MS-DOS Device Name in GET Request

Title source: llm
STIX 2.1

Description

The HTTP daemon in Ipswitch WhatsUp Gold 8.03 and 8.03 Hotfix 1 allows remote attackers to cause a denial of service (server crash) via a GET request containing an MS-DOS device name, as demonstrated using "prn.htm".

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/17418
Patch, Vendor Advisory third-party-advisory x_refsource_idefense
http://www.idefense.com/application/poi/display?id=142&type=vulnerabilities

Scores

EPSS 0.1258
EPSS Percentile 94.0%

Details

Status published
Products (7)
ipswitch/whatsup_gold 8.03_hotfix_1
progress/whatsup_gold 7.0
progress/whatsup_gold 7.03
progress/whatsup_gold 7.04
progress/whatsup_gold 8.0
progress/whatsup_gold 8.01
progress/whatsup_gold 8.03
Published Oct 20, 2004
Tracked Since Feb 18, 2026