Websweeper 4.0 does not limit the length of certain HTTP headers, which allows remote attackers to cause a denial of service (memory exhaustion) via an extremely large HTTP Referrer: header.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Websweeper | Baltimore_technologies | 4.0 (including) | 4.0 (including) |