CVE-2014-9708

Loading...

General

Score:5.0/10.0
Severity:Medium
Category:N/A

Impact Metrics

Confidentiality:None
Integrity:None
Availability:Partial

Exploitability Metrics

Access Vector:Network
Access Complexity:Low
Authentication:None

Published on 31/03/15 - Updated on 09/10/18

Description

Embedthis Appweb before 4.6.6 and 5.x before 5.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via a Range header with an empty value, as demonstrated by "Range: x=,".

Category:

There is insufficient information about the issue to classify it; details are unknown or unspecified.

Security Notices

US National Vulnerability DatabaseCVE-2014-9708

Exploits

No exploits available for this CVE in our database.

Relative technologies

VendorProduct
embedthisappweb
oracleenterprise_communications_broker

Share this vulnerability with:

Twitter Facebook LinkedIn Mail