Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Xitami Webserver MS-DOS Device Name DoS Vulnerability

Xitami is a webserver for Windows 98/Me from Imatix.

Versions of Xitami are vulnerable to a denial of service attack.

It is possible to remotely crash a system running Xitami webserver by submitting a URL request for an MS-DOS devicename.

A hard reboot of the exploited server will be required to restore web services.

This vulnerability may also be exploited by executing the command 'cd con/con' while connected to the Xitami ftp server, which is enabled by default.







 

Privacy Statement
Copyright 2008, SecurityFocus