SpyNet 6.5 Chat Server - Multiple Connection Denial of Service Vulnerabilities
Author: nemesystm
type: dos
platform: windows
port:
date_added: 2001-05-07
date_updated: 2012-09-02
verified: 1
codes: CVE-2001-0581;OSVDB-13891
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/2701/info
Spynet Chat Server is a freely available client-server chat package by Spytech Software. Spynet Chat offers IRC style chat to users of the software package.
A problem in the package could allow remote users to crash the chat server. Upon receiving 100 connection requests from a host within a short period of time, and then receiving a message from same host via the chat client, the chat server exits abnormally. A manual restart is required to resume service.
This problem makes it possible for remote users to crash a Spynet Chat Server, denying service to legimate users.
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/20828.zip