CVE-2008-5421

The SSL web administration service in NetWin SmsGate 1.1n and earlier allows remote attackers to cause a denial of service (hang) via (1) a large integer in the Content-Length HTTP header; (2) an invalid value in the Content-Length HTTP header, as demonstrated by a negative integer; or (3) a missing Content-Length HTTP header.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:netwin:smsgate:*:*:*:*:*:*:*:*
cpe:2.3:a:netwin:smsgate:1.0a:*:*:*:*:*:*:*
cpe:2.3:a:netwin:smsgate:1.0c:*:*:*:*:*:*:*
cpe:2.3:a:netwin:smsgate:1.0h:*:*:*:*:*:*:*
cpe:2.3:a:netwin:smsgate:1.0r:*:*:*:*:*:*:*
cpe:2.3:a:netwin:smsgate:1.0w:*:*:*:*:*:*:*
cpe:2.3:a:netwin:smsgate:1.1m:*:*:*:*:*:*:*

History

21 Nov 2024, 00:54

Type Values Removed Values Added
References () http://aluigi.altervista.org/adv/smsgheit-adv.txt - Exploit () http://aluigi.altervista.org/adv/smsgheit-adv.txt - Exploit
References () http://secunia.com/advisories/29149 - Vendor Advisory () http://secunia.com/advisories/29149 - Vendor Advisory
References () http://www.securityfocus.com/bid/28048 - () http://www.securityfocus.com/bid/28048 -

Information

Published : 2008-12-11 15:30

Updated : 2024-11-21 00:54


NVD link : CVE-2008-5421

Mitre link : CVE-2008-5421

CVE.ORG link : CVE-2008-5421


JSON object : View

Products Affected

netwin

  • smsgate
CWE
CWE-399

Resource Management Errors