CVE-2018-7582

HIGH

WebLog Expert Web Server Enterprise 9.4 - Denial of Service via Long HTTP Accept Header

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2018-7582. PoCs published by hyp3rlinx.

AI-analyzed exploit summary This exploit demonstrates a Denial of Service (DoS) vulnerability in WebLog Expert Web Server Enterprise v9.4 by sending a maliciously crafted HTTP request with an overly long Accept header to TCP port 9991, causing the server to crash.

Description

WebLog Expert Web Server Enterprise 9.4 allows Remote Denial Of Service (daemon crash) via a long HTTP Accept Header to TCP port 9991.

Exploits (1)

exploitdb WORKING POC
by hyp3rlinx · pythondoswindows
https://www.exploit-db.com/exploits/44271

This exploit demonstrates a Denial of Service (DoS) vulnerability in WebLog Expert Web Server Enterprise v9.4 by sending a maliciously crafted HTTP request with an overly long Accept header to TCP port 9991, causing the server to crash.

Classification
Working Poc 100%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: WebLog Expert Web Server Enterprise v9.4
No auth needed
Prerequisites: Network access to the target server on port 9991
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit, Third Party Advisory, VDB Entry exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/44271/

Scores

CVSS v3 7.5
EPSS 0.3764
EPSS Percentile 98.3%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-770
Status published
Products (1)
weblogexpert/weblog_expert 9.4
Published Mar 09, 2018
Tracked Since Feb 18, 2026