Record summary

CVE-2007-3956 has a selected CVSS score of 7.8; EIP currently links 1 catalogued exploit.

Description

TeamSpeak WebServer 2.0 for Windows does not validate parameter value lengths and does not expire TCP sessions, which allows remote attackers to cause a denial of service (CPU and memory consumption) via long username and password parameters in a request to login.tscmd on TCP port 14534.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBTeamSpeak 2.0 (Windows Release) - Remote Denial of ServiceExploitDB exploitby YAG KOHHANot analyzed1 file
ExploitDB

PoC details

References

6