CVE Vulnerabilities

CVE-2008-5421

Published: Dec 11, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The SSL web administration service in NetWin SmsGate 1.1n and earlier allows remote attackers to cause a denial of service (hang) via (1) a large integer in the Content-Length HTTP header; (2) an invalid value in the Content-Length HTTP header, as demonstrated by a negative integer; or (3) a missing Content-Length HTTP header.

Affected Software

NameVendorStart VersionEnd Version
SmsgateNetwin*1.1n (including)
SmsgateNetwin1.0a (including)1.0a (including)
SmsgateNetwin1.0c (including)1.0c (including)
SmsgateNetwin1.0h (including)1.0h (including)
SmsgateNetwin1.0r (including)1.0r (including)
SmsgateNetwin1.0w (including)1.0w (including)
SmsgateNetwin1.1m (including)1.1m (including)

References