// For flags

CVE-2008-5421

 

Severity Score

5.0
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The SSL web administration service in NetWin SmsGate 1.1n and earlier allows remote attackers to cause a denial of service (hang) via (1) a large integer in the Content-Length HTTP header; (2) an invalid value in the Content-Length HTTP header, as demonstrated by a negative integer; or (3) a missing Content-Length HTTP header.

El servicio SSL web administration en NetWin SmsGate v1.1n y anteriores permite a atacantes remotos provocar una denegación de servicio (cuelgue) mediante (1) un entero largo en la cabecera HTTP Content-Length; (2) un valor inválido en la cabecera HTTP Content-Length, como se demostró por el uso de un entero negativo; o (3) una cabecera HTTP Content-Length perdida.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2008-12-11 CVE Reserved
  • 2008-12-11 CVE Published
  • 2024-09-16 CVE Updated
  • 2024-09-16 First Exploit
  • 2024-09-17 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-399: Resource Management Errors
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Netwin
Search vendor "Netwin"
Smsgate
Search vendor "Netwin" for product "Smsgate"
<= 1.1n
Search vendor "Netwin" for product "Smsgate" and version " <= 1.1n"
-
Affected
Netwin
Search vendor "Netwin"
Smsgate
Search vendor "Netwin" for product "Smsgate"
1.0a
Search vendor "Netwin" for product "Smsgate" and version "1.0a"
-
Affected
Netwin
Search vendor "Netwin"
Smsgate
Search vendor "Netwin" for product "Smsgate"
1.0c
Search vendor "Netwin" for product "Smsgate" and version "1.0c"
-
Affected
Netwin
Search vendor "Netwin"
Smsgate
Search vendor "Netwin" for product "Smsgate"
1.0h
Search vendor "Netwin" for product "Smsgate" and version "1.0h"
-
Affected
Netwin
Search vendor "Netwin"
Smsgate
Search vendor "Netwin" for product "Smsgate"
1.0r
Search vendor "Netwin" for product "Smsgate" and version "1.0r"
-
Affected
Netwin
Search vendor "Netwin"
Smsgate
Search vendor "Netwin" for product "Smsgate"
1.0w
Search vendor "Netwin" for product "Smsgate" and version "1.0w"
-
Affected
Netwin
Search vendor "Netwin"
Smsgate
Search vendor "Netwin" for product "Smsgate"
1.1m
Search vendor "Netwin" for product "Smsgate" and version "1.1m"
-
Affected