Lucene search

K
cve[email protected]CVE-2008-3697
HistorySep 03, 2008 - 2:12 p.m.

CVE-2008-3697

2008-09-0314:12:00
CWE-20
web.nvd.nist.gov
26
vmware
server
isapi
extension
denial of service
vulnerability

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

6.4 Medium

AI Score

Confidence

High

0.146 Low

EPSS

Percentile

95.8%

An unspecified ISAPI extension in VMware Server before 1.0.7 build 108231 allows remote attackers to cause a denial of service (IIS crash) via a malformed request.

Affected configurations

NVD
Node
vmwareserverMatch1.0.1_build_29996
OR
vmwareserverMatch1.0.3
OR
vmwareserverMatch1.0.4_build_56528
OR
vmwarevmware_serverRange≀1.0.6
OR
vmwarevmware_serverMatch1.0
OR
vmwarevmware_serverMatch1.0.0
OR
vmwarevmware_serverMatch1.0.1
OR
vmwarevmware_serverMatch1.0.2
OR
vmwarevmware_serverMatch1.0.4
OR
vmwarevmware_serverMatch1.0.5

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

6.4 Medium

AI Score

Confidence

High

0.146 Low

EPSS

Percentile

95.8%