CVE-2008-0071

Bittorrent < 6.0.2 - Improper Input Validation

Title source: rule

Description

The Web UI interface in (1) BitTorrent before 6.0.3 build 8642 and (2) uTorrent before 1.8beta build 10524 allows remote attackers to cause a denial of service (application crash) via an HTTP request with a malformed Range header.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Exodus · perldoswindows
https://www.exploit-db.com/exploits/5918

Scores

EPSS 0.1191
EPSS Percentile 93.8%

Details

CWE
CWE-20
Status published
Products (50)
bittorrent/bittorrent 3.9.1
bittorrent/bittorrent 4.0.0
bittorrent/bittorrent 4.0.1
bittorrent/bittorrent 4.0.2
bittorrent/bittorrent 4.0.3
bittorrent/bittorrent 4.0.4
bittorrent/bittorrent 4.1.0
bittorrent/bittorrent 4.1.1
bittorrent/bittorrent 4.1.2
bittorrent/bittorrent 4.1.3
... and 40 more
Published Jun 16, 2008
Tracked Since Feb 18, 2026