Lucene search

K
cve[email protected]CVE-2004-0931
HistoryJan 19, 2005 - 5:00 a.m.

CVE-2004-0931

2005-01-1905:00:00
web.nvd.nist.gov
30
cve-2004-0931
mysql
maxdb
denial of service
http request
vulnerability

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

6.5 Medium

AI Score

Confidence

High

0.014 Low

EPSS

Percentile

86.7%

MySQL MaxDB before 7.5.00.18 allows remote attackers to cause a denial of service (crash) via an HTTP request to webdbm with high ASCII values in the Server field, which triggers an assert error in the IsAscii7 function.

Affected configurations

NVD
Node
mysqlmaxdbMatch7.5.00.08
OR
mysqlmaxdbMatch7.5.00.11
OR
mysqlmaxdbMatch7.5.00.12
OR
mysqlmaxdbMatch7.5.00.14
OR
mysqlmaxdbMatch7.5.00.15
OR
mysqlmaxdbMatch7.5.00.16

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

6.5 Medium

AI Score

Confidence

High

0.014 Low

EPSS

Percentile

86.7%

Related for CVE-2004-0931