Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Denial of Service >> HTTP Windows 98 MS/DOS device names DOS


Vulnerability Assessment Details

HTTP Windows 98 MS/DOS device names DOS

Vulnerability Assessment Summary
Crashes Windows 98

Detailed Explanation for this Vulnerability Assessment

It was possible to freeze or reboot Windows by
reading a MS/DOS device through HTTP, using
a file name like CON\CON, AUX.htm or AUX.

A cracker may use this flaw to make your
system crash continuously, preventing
you from working properly.

Solution : upgrade your system or use a
HTTP server that filters those names out.

Network Security Threat Level: High

Networks Security ID: 1043, 2575, 2608, 2622, 2649, 2704, 3929, 6659, 6662

Vulnerability Assessment Copyright: This script is Copyright (C) 2001 Michel Arboi

Cables, Connectors

Dell R710 Server Dual E5540 QC 2.53GHz 64GB 2x 300GB, 4x 500GB RPS 3.5in H700
$636.0
Dell R710 Server Dual E5540 QC 2.53GHz 64GB 2x 300GB, 4x 500GB RPS 3.5in H700 pictureIntel XEON E3-1275L v3 LGA 1150 2.7GHz Quad Core 8M Cache 5.00GT/s SR1T7
$190.0
Intel XEON E3-1275L v3 LGA 1150 2.7GHz Quad Core 8M Cache 5.00GT/s SR1T7 pictureIntel Xeon E5-2650 2Ghz (2.8GHz Turbo) 8 core 95W Socket LGA 2011 CPU
$20.0
Intel Xeon E5-2650 2Ghz (2.8GHz Turbo) 8 core  95W Socket LGA 2011 CPU pictureIntel Xeon E5-2667 2.9GHz (3.5GHz Turbo) 15M 8GT/s LGA2011 CPU
$35.0
Intel Xeon E5-2667 2.9GHz (3.5GHz Turbo) 15M 8GT/s LGA2011 CPU picture


Discussions

No Discussions have been posted on this vulnerability.