CVE-2013-5657

HIGH

AultWare pwStore 2010.8.30.0 - Denial of Service via Empty HTTP Request

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2013-5657. PoCs published by Josep Pi Rodriguez.

AI-analyzed exploit summary This exploit leverages a denial-of-service vulnerability in pwStore by fuzzing the HTTP request handling mechanism. It uses the Sulley fuzzing framework to send malformed HTTP requests to the target, potentially crashing the application.

Description

AultWare pwStore 2010.8.30.0 has DoS via an empty HTTP request

Exploits (1)

exploitdb WORKING POC VERIFIED
by Josep Pi Rodriguez · pythondoswindows
https://www.exploit-db.com/exploits/38747

This exploit leverages a denial-of-service vulnerability in pwStore by fuzzing the HTTP request handling mechanism. It uses the Sulley fuzzing framework to send malformed HTTP requests to the target, potentially crashing the application.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Moderate
Reliability
Reliable
Target: pwStore 2010.8.30.0
No auth needed
Prerequisites: Network access to the target · Sulley fuzzing framework installed
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit, Third Party Advisory x_refsource_misc
http://realpentesting.blogspot.com.es/p/advisories.html
Exploit, Mailing List, Third Party Advisory x_refsource_misc
http://seclists.org/fulldisclosure/2013/Sep/8
Exploit, Third Party Advisory, VDB Entry x_refsource_misc
https://www.securityfocus.com/bid/62112

Scores

CVSS v3 7.5
EPSS 0.0685
EPSS Percentile 93.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (1)
aultware/pwstore 2010.8.30.0
Published Jan 07, 2020
Tracked Since Feb 18, 2026