Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-0362

Опубликовано: 13 фев. 2009
Источник: nvd
CVSS2: 4
EPSS Низкий

Описание

filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a denial of service (forced authentication failures) via a crafted reverse-resolved DNS name (rhost) entry that contains a substring that is interpreted as an IP address, a different vulnerability than CVE-2007-4321.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:fail2ban:fail2ban:0.8.3:*:*:*:*:*:*:*

EPSS

Процентиль: 69%
0.00589
Низкий

4 Medium

CVSS2

Дефекты

CWE-287

Связанные уязвимости

ubuntu
почти 17 лет назад

filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a denial of service (forced authentication failures) via a crafted reverse-resolved DNS name (rhost) entry that contains a substring that is interpreted as an IP address, a different vulnerability than CVE-2007-4321.

redhat
около 17 лет назад

filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a denial of service (forced authentication failures) via a crafted reverse-resolved DNS name (rhost) entry that contains a substring that is interpreted as an IP address, a different vulnerability than CVE-2007-4321.

debian
почти 17 лет назад

filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expre ...

github
почти 4 года назад

filter.d/wuftpd.conf in Fail2ban 0.8.3 uses an incorrect regular expression that allows remote attackers to cause a denial of service (forced authentication failures) via a crafted reverse-resolved DNS name (rhost) entry that contains a substring that is interpreted as an IP address, a different vulnerability than CVE-2007-4321.

EPSS

Процентиль: 69%
0.00589
Низкий

4 Medium

CVSS2

Дефекты

CWE-287