CVE-2001-0392: Medium severity navision financials server vulnerability
Published May 24, 2001
·Updated
Navision Financials Server 2.60 and earlier allows remote attackers to cause a denial of service by sending a null character and a long string to the server port (2407), which causes the server to crash.
Affected Software
2 affected components
Navision Financials Server<=2.60
Navision Financials Server=2.50
Remediation
Patch Available
Event History
May 24, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0392?
CVE-2001-0392 is classified as a denial of service vulnerability that can crash the Navision Financials Server.
2
How do I fix CVE-2001-0392?
To fix CVE-2001-0392, update the Navision Financials Server to a version later than 2.60.
3
Which versions of Navision Financials Server are affected by CVE-2001-0392?
Navision Financials Server versions 2.60 and earlier are affected by CVE-2001-0392.
4
What attack vector is used for CVE-2001-0392?
CVE-2001-0392 can be exploited by sending a null character along with a long string to port 2407 on the server.
5
What is the impact of CVE-2001-0392 on system availability?
The exploitation of CVE-2001-0392 results in a denial of service, leading to server crashes and unavailability.