BlueDragon Server and Server JX 6.2.1.286 for Windows allows remote attackers to cause a denial of service (hang) via a request for a .cfm file whose name contains an MS-DOS device name such as (1) con, (2) aux, (3) com1, and (4) com2.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Bluedragon_server | New_atlanta_communications | 6.2.1.286 (including) | 6.2.1.286 (including) |
Bluedragon_server_jx | New_atlanta_communications | 6.2.1.286 (including) | 6.2.1.286 (including) |