TelCondex SimpleWebserver 2.0.6 - Denial of Service
Author: Marc Ruef
type: dos
platform: windows
port:
date_added: 2002-10-15
date_updated: 2012-10-13
verified: 1
codes: CVE-2002-1907;OSVDB-57529
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/5961/info
A problem with SimpleWebServer could make it possible for a user to deny service to legitimate users of the server.
It has been reported that SimpleWebServer does not properly handle long requests. Because of this, a remote attacker placing a HTTP request of excessive length could cause the server to become unstable. In most cases, a long request causes the web server to crash, requiring a manual restart of the service.
http://<server>/AAA[...]AAA