McMurtrey/Whitaker & Associates Cart32 3.0/3.1/3.5 - Denial of Service

Author: sozni
type: dos
platform: cgi
port: 
date_added: 2000-11-10  
date_updated: 2012-08-10  
verified: 1  
codes: OSVDB-85297  
tags:   
aliases:   
screenshot_url:   
application_url:   

raw file: 20400.txt  
source : https://www.securityfocus.com/bid/1934/info

Cart32 is a shopping cart application for e-commerce enabled sites.

Cart32 is subject to a denial of service. When requesting a specially formed URL the application will cause the CPU utilization to spike to 100%. A restart of the application is required in order to gain normal functionality.


http://target/cgi-bin/c32web.exe/ShowProgress