CVE-2007-0138

Fersch Formbankserver - Denial of Service

Title source: rule

Description

formbankcgi.exe in Fersch Formbankserver 1.9, when the PATH_INFO begins with (1) AbfrageForm or (2) EingabeForm, allows remote attackers to cause a denial of service (daemon crash) via multiple requests containing many /../ sequences in the Name parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Bl0od3r · perldoswindows
https://www.exploit-db.com/exploits/3056

Scores

EPSS 0.0419
EPSS Percentile 88.7%

Details

Status published
Products (1)
fersch/formbankserver 1.9
Published Jan 09, 2007
Tracked Since Feb 18, 2026