In Flexense Disk Pulse Enterprise v10.1.18, the Control Protocol suffers from a denial of service vulnerability. The attack vector is a crafted SERVER_GET_INFO packet sent to control port 9120.
References
Link | Resource |
---|---|
http://packetstormsecurity.com/files/145763/Disk-Pulse-Enterprise-10.1.18-Denial-Of-Service.html | Exploit Third Party Advisory VDB Entry |
https://www.exploit-db.com/exploits/43452/ | Exploit Third Party Advisory VDB Entry |
https://www.exploit-db.com/exploits/43589/ | Exploit Third Party Advisory VDB Entry |
Configurations
Information
Published : 2018-01-10 10:29
Updated : 2018-02-01 11:39
NVD link : CVE-2017-15663
Mitre link : CVE-2017-15663
JSON object : View
CWE
CWE-358
Improperly Implemented Security Check for Standard
Products Affected
flexense
- disk_pulse