13268Third-party advisory
http://secunia.com/advisories/13268 CVE-2004-2534
Fastream NETFile Web Server 7.1.2 - 'HEAD' Denial of Service
Record summary
CVE-2004-2534 has a selected CVSS score of 7.8; EIP currently links 1 catalogued exploit.
Description
Fastream NETFile Server 7.1.2 does not properly handle keep-alive connection timeouts and does not close the connection after a HEAD request, which allows remote attackers to perform a denial of service (connection consumption) by sending a large number HTTP HEAD requests.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBFastream NETFile Web Server 7.1.2 - 'HEAD' Denial of ServiceExploitDB exploitby karak0rsanNot analyzed1 file
References
71012267vdb entry
http://securitytracker.com/id?1012267 users.pandora.be
http://users.pandora.be/bratax/advisories/b003.html 12101vdb entry
http://www.osvdb.org/12101 11687vdb entry
http://www.securityfocus.com/bid/11687 fastream-head-request-dos(18192)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/18192 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2004-2534