Xerver 4.32 allows remote authenticated users to cause a denial of service (daemon crash) via a non-numeric web port assignment in the management interface. NOTE: this can be leveraged by non-authenticated attackers using CVE-2009-4657.
References
Configurations
Information
Published : 2010-03-03 12:30
Updated : 2017-09-18 18:30
NVD link : CVE-2009-4658
Mitre link : CVE-2009-4658
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
omidrouhani
- xerver