CVE-2007-6315

BarracudaDrive Web Server <3.8 - DoS

Title source: llm

Description

Group Chat in BarracudaDrive Web Server before 3.8 allows remote authenticated users to cause a denial of service (crash) via a HTTP request to /eh/chat.ehintf/C. that does not contain a Connection ID, which results in a NULL pointer dereference.

Exploits (1)

exploitdb WORKING POC
remotewindows
https://www.exploit-db.com/exploits/4713

Scores

EPSS 0.0700
EPSS Percentile 91.5%

Details

CWE
CWE-119
Status published
Products (2)
real_time_logic/barracudadrive_web_server 3.7.2
real_time_logic/barracudadrive_web_server_home_server 3.7.2
Published Dec 12, 2007
Tracked Since Feb 18, 2026