VulnerabilityModified
CVE-2002-0748
LabVIEW Web Server 5.1.1 through 6.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET request that ends in two newline characters, instead of the expected carriage return/newline combinations.
MEDIUM 5.0EPSS 10.3%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 10.3%, higher than 95% of all known CVEs. Patch or mitigate before the next change window.
Description
LabVIEW Web Server 5.1.1 through 6.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET request that ends in two newline characters, instead of the expected carriage return/newline combinations.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 10.28% probability · 95th percentile
- CISA KEV
- Not listed
- Affected
- national instruments/labview
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/bugtraq/2002-04/0323.htmlExploit, Vendor Advisory
- http://digital.ni.com/public.nsf/websearch/4C3F86E655E5389886256BA00064B22F?OpenDocument
- http://www.iss.net/security_center/static/8919.phpVendor Advisory
- http://www.osvdb.org/5119
- http://www.securityfocus.com/bid/4577Exploit, Patch, Vendor Advisory
- http://archives.neohapsis.com/archives/bugtraq/2002-04/0323.htmlExploit, Vendor Advisory
- http://digital.ni.com/public.nsf/websearch/4C3F86E655E5389886256BA00064B22F?OpenDocument
- http://www.iss.net/security_center/static/8919.phpVendor Advisory
- http://www.osvdb.org/5119
- http://www.securityfocus.com/bid/4577Exploit, Patch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.