Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-5336

Опубликовано: 26 авг. 2014
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

Monkey HTTP Server before 1.5.3, when the File Descriptor Table (FDT) is enabled and custom error messages are set, allows remote attackers to cause a denial of service (file descriptor consumption) via an HTTP request that triggers an error message.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:monkey-project:monkey:*:*:*:*:*:*:*:*
Версия до 1.5.2 (включая)
cpe:2.3:a:monkey-project:monkey:0.1.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.1.4:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.5.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.5.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.5.2:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.6.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.6.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.6.2:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.6.3:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.7.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.7.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.7.2:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.8.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.8.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.8.2:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.8.3:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.8.4:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.8.4:2:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.8.5:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.9.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.9.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.9.2:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.9.3:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.10.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.10.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.10.2:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.10.3:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.11.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.11.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.12.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.12.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.12.2:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.13.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.13.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.13.2:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.20.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.20.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.20.2:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.20.3:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.21.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.30.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.31.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.32.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:0.33.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:1.1.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:1.1.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:1.2.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:1.2.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:1.2.2:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:1.4.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:1.5.0:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:1.5.1:*:*:*:*:*:*:*
cpe:2.3:a:monkey-project:monkey:1.5.3:*:*:*:*:*:*:*

EPSS

Процентиль: 78%
0.01138
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

ubuntu
больше 11 лет назад

Monkey HTTP Server before 1.5.3, when the File Descriptor Table (FDT) is enabled and custom error messages are set, allows remote attackers to cause a denial of service (file descriptor consumption) via an HTTP request that triggers an error message.

debian
больше 11 лет назад

Monkey HTTP Server before 1.5.3, when the File Descriptor Table (FDT) ...

github
больше 3 лет назад

Monkey HTTP Server before 1.5.3, when the File Descriptor Table (FDT) is enabled and custom error messages are set, allows remote attackers to cause a denial of service (file descriptor consumption) via an HTTP request that triggers an error message.

EPSS

Процентиль: 78%
0.01138
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-20