CVE-2004-1169

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/01/2005
Last modified:
11/07/2017

Description

MaxDB WebTools 7.5.00.18 and earlier allows remote attackers to cause a denial of service (application crash) via an HTTP GET request for a file that does not exist, followed by two carriage returns, which causes a NULL dereference.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mysql:maxdb:7.5.00.08:*:*:*:*:*:*:*
cpe:2.3:a:mysql:maxdb:7.5.00.11:*:*:*:*:*:*:*
cpe:2.3:a:mysql:maxdb:7.5.00.12:*:*:*:*:*:*:*
cpe:2.3:a:mysql:maxdb:7.5.00.14:*:*:*:*:*:*:*
cpe:2.3:a:mysql:maxdb:7.5.00.15:*:*:*:*:*:*:*
cpe:2.3:a:mysql:maxdb:7.5.00.16:*:*:*:*:*:*:*
cpe:2.3:a:mysql:maxdb:7.5.00.18:*:*:*:*:*:*:*