CVE Database
/

CVE-2006-0911

Back to search

CVE-2006-0911

Published: Feb 28, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

NmService.exe in Ipswitch WhatsUp Professional 2006 allows remote attackers to cause a denial of service (CPU consumption) via crafted requests to Login.asp, possibly involving the (1) "In]" and (2) "b;tnLogIn" parameters, or (3) malformed btnLogIn parameters, possibly involving missing "[" (open bracket) or "[" (closing bracket) characters, as demonstrated by "&btnLogIn=[Log&In]=&" or "&b;tnLogIn=[Log&In]=&" in the URL. NOTE: due to the lack of diagnosis by the original researcher, the precise nature of the vulnerability is unclear.

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2006-0704
vdb-entry
x_refsource_VUPEN
16771
vdb-entry
x_refsource_BID
472
third-party-advisory
x_refsource_SREASON
23494
vdb-entry
x_refsource_OSVDB
whatsup-nmservice-dos(24864)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now