Vulnerability Name: | CVE-2001-0747 (CCN-7320) | ||||||||
Assigned: | 2001-05-19 | ||||||||
Published: | 2001-05-19 | ||||||||
Updated: | 2017-08-17 | ||||||||
Summary: | Buffer overflow in iPlanet Web Server (iWS) Enterprise Edition 4.1, service packs 3 through 7, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long method name in an HTTP request. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: BUGTRAQ Type: Patch, Vendor Advisory 20010518 Netscape Enterprise Server 4 Method and URI overflow Source: CCN Type: Digizen Security Group advisory, 2001 Netscape Enterprise Server 4 Method and URI overflow Source: MITRE Type: CNA CVE-2001-0747 Source: CCN Type: Important iPlanet Web Server 4.1 SP 3-7 Product Alert: May 11, 2001 Recommend Immediate Patch/Upgrade Source: CONFIRM Type: Patch, Vendor Advisory http://www.iplanet.com/products/iplanet_web_enterprise/iwsalert5.11.html Source: CCN Type: OSVDB ID: 13962 iPlanet Web Server HTTP Request Long Method Name Overflow Source: CCN Type: BID-6792 Netscape Enterprise Server HTTP Method Name Buffer Overflow Vulnerability Source: XF Type: UNKNOWN netscape-enterprise-http-method-bo(7320) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |