Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-1689

Опубликовано: 07 апр. 2008
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

Stack consumption vulnerability in WebContainer.exe 1.0.0.336 and earlier in SLMail Pro 6.3.1.0 and earlier allows remote attackers to cause a denial of service (daemon crash) via a long request header in an HTTP request to TCP port 801. NOTE: some of these details are obtained from third party information.

Комментарий

Only version information is located here: http://www.seattlelab.com/Products/SLMailPro/Utilities.asp. Versions 3.x, 4.x, and 5.x are vulnerable, but specific version information is not available.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:seattle_lab_software:slmail_pro:*:*:*:*:*:*:*:*
Версия до 6.3.1.0 (включая)
cpe:2.3:a:seattle_lab_software:slmail_pro:5.5:*:*:*:*:*:*:*
cpe:2.3:a:seattle_lab_software:slmail_pro:6.1:*:*:*:*:*:*:*
cpe:2.3:a:seattle_lab_software:slmail_pro:6.2:*:*:*:*:*:*:*
cpe:2.3:a:seattle_lab_software:slmail_pro:6.2.1:*:*:*:*:*:*:*
cpe:2.3:a:seattle_lab_software:slmail_pro:6.3:*:*:*:*:*:*:*

EPSS

Процентиль: 78%
0.01188
Низкий

5 Medium

CVSS2

Дефекты

CWE-399

Связанные уязвимости

github
почти 4 года назад

Stack consumption vulnerability in WebContainer.exe 1.0.0.336 and earlier in SLMail Pro 6.3.1.0 and earlier allows remote attackers to cause a denial of service (daemon crash) via a long request header in an HTTP request to TCP port 801. NOTE: some of these details are obtained from third party information.

EPSS

Процентиль: 78%
0.01188
Низкий

5 Medium

CVSS2

Дефекты

CWE-399