Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2002-1154

Опубликовано: 11 окт. 2002
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

anlgform.pl in Analog before 5.23 does not restrict access to the PROGRESSFREQ progress update command, which allows remote attackers to cause a denial of service (disk consumption) by using the command to report updates more frequently and fill the web server error log.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:stephen_turner:analog:*:*:*:*:*:*:*:*
Версия до 5.23 (включая)

EPSS

Процентиль: 70%
0.00672
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

redhat
около 23 лет назад

anlgform.pl in Analog before 5.23 does not restrict access to the PROGRESSFREQ progress update command, which allows remote attackers to cause a denial of service (disk consumption) by using the command to report updates more frequently and fill the web server error log.

debian
больше 22 лет назад

anlgform.pl in Analog before 5.23 does not restrict access to the PROG ...

github
около 3 лет назад

anlgform.pl in Analog before 5.23 does not restrict access to the PROGRESSFREQ progress update command, which allows remote attackers to cause a denial of service (disk consumption) by using the command to report updates more frequently and fill the web server error log.

EPSS

Процентиль: 70%
0.00672
Низкий

5 Medium

CVSS2

Дефекты

NVD-CWE-Other