Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Denial of Service >> WindWeb <= 2.0 Denial of Service Vulnerability


Vulnerability Assessment Details

WindWeb <= 2.0 Denial of Service Vulnerability

Vulnerability Assessment Summary
Checks for denial of service vulnerability in WindWeb <= 2.0

Detailed Explanation for this Vulnerability Assessment

Summary :

The remote web server is prone to denial of service attacks.

Description :

The remote host appears to be running the WindWeb web server, which is
found on embedded devices running Wind River Systems' VxWorks such as
certain ADSL modems and routers.

The version of WindWeb installed on the remote host is affected by a
remote denial of service vulnerability when it receives
maliciously-crafted requests. A possible hacker may be able to leverage
this issue to deny access to the web server to legitimate users.

See also :

http://downloads.securityfocus.com/vulnerabilities/exploits/Hasbani_dos.c

Solution :

Limit access to the web server.

Network Security Threat Level:

Low / CVSS Base Score : 3
(AV:R/AC:L/Au:NR/C:N/A:C/I:N/B:N)

Networks Security ID: 15225

Vulnerability Assessment Copyright: This script is Copyright (C) 2005-2006 Tenable Network Security

Cables, Connectors

IBM 22R6182 736w server power supply
$49.99
IBM 22R6182 736w server power supply pictureIBM 39y7289 x3250 39y7288 api6fs03 030l 351w Server Power Supply PSU
$17.99
IBM 39y7289 x3250 39y7288 api6fs03 030l 351w Server Power Supply PSU pictureIBM 300gb SAS Server Drive Including Tray. 15000 RPM Fast
$10.73
IBM 300gb SAS Server Drive Including Tray. 15000 RPM Fast pictureIBM X3250 M3 SERVER CPU HEAT SINK 49Y4605 46C6798, D35
$8.16
IBM X3250 M3 SERVER CPU HEAT SINK 49Y4605 46C6798, D35 picture


Discussions

No Discussions have been posted on this vulnerability.