CVE

CVE-2004-2519

Severity:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2004
Last modified:
07/11/2023

Description

Gattaca Server 2003 1.1.10.0 allows remote attackers to cause a denial of service (CPU consumption) via directory specifiers in the LANGUAGE parameter to (1) index.tmpl and (2) web.tmpl, such as (a) slash "/", (b) backslash "\", (c) dot ".",, (d) dot dot "..", and (e) internal slash "lang//en".

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:geeos_team:gattaca_server_2003:1.1.10.0:*:*:*:*:*:*:*