Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Denial of Service >> WindWeb <= 2.0 Denial of Service Vulnerability


Vulnerability Assessment Details

WindWeb <= 2.0 Denial of Service Vulnerability

Vulnerability Assessment Summary
Checks for denial of service vulnerability in WindWeb <= 2.0

Detailed Explanation for this Vulnerability Assessment

Summary :

The remote web server is prone to denial of service attacks.

Description :

The remote host appears to be running the WindWeb web server, which is
found on embedded devices running Wind River Systems' VxWorks such as
certain ADSL modems and routers.

The version of WindWeb installed on the remote host is affected by a
remote denial of service vulnerability when it receives
maliciously-crafted requests. A possible hacker may be able to leverage
this issue to deny access to the web server to legitimate users.

See also :

http://downloads.securityfocus.com/vulnerabilities/exploits/Hasbani_dos.c

Solution :

Limit access to the web server.

Network Security Threat Level:

Low / CVSS Base Score : 3
(AV:R/AC:L/Au:NR/C:N/A:C/I:N/B:N)

Networks Security ID: 15225

Vulnerability Assessment Copyright: This script is Copyright (C) 2005-2006 Tenable Network Security

Cables, Connectors

SW 4gb SFP Transceiver
$20.0
SW 4gb SFP Transceiver pictureJuniper EX4200 48 Port Gigabit 1Gb Switch-EX4200-48T-8xPOE-EX-UM-2X4SFP-711-0260
$964.1
Juniper EX4200 48 Port Gigabit 1Gb Switch-EX4200-48T-8xPOE-EX-UM-2X4SFP-711-0260 pictureCisco N7K-M132XP-12 32-Port 10Gb Ethernet Nexus 7000 SFP Module
$70.0
Cisco N7K-M132XP-12 32-Port 10Gb Ethernet Nexus 7000 SFP Module pictureZte Sfp-fx-oc3-s15k Compatible Oc-3-ir Sfp Transceiver
$233.82
Zte Sfp-fx-oc3-s15k Compatible Oc-3-ir Sfp Transceiver picture


Discussions

No Discussions have been posted on this vulnerability.