CVE-2002-2258
Moby NetSuite allows remote attackers to cause a denial of service (crash) via an HTTP POST request with a (1) large integer or (2) non-numeric value in the Content-Length header, which causes an access violation after a failed atoi function call.
- Affected products
- Moby
- Mobydisk Netsuite
- All versions
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 2.7% (85th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2007-10-14
CVE-2002-2258 at NVD
1 known exploit for CVE-2002-2258
Proof-of-concept code and exploit modules indexed by Sploitus