CVE-2001-0746: Buffer Overflow
Buffer overflow in Web Publisher in iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a request for a long URI with (1) GETPROPERTIES, (2) GETATTRIBUTENAMES, or other methods.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2001-0746?
CVE-2001-0746 has a high severity rating due to its potential to cause denial of service and remote code execution.
How do I fix CVE-2001-0746?
To fix CVE-2001-0746, update the iPlanet Web Server to a version that is not affected by this vulnerability.
What software versions are affected by CVE-2001-0746?
CVE-2001-0746 affects iPlanet Web Server versions 4.1 SP3 to 4.1 SP7.
What types of attacks are possible with CVE-2001-0746?
Attackers can exploit CVE-2001-0746 by sending a specially crafted request that triggers a buffer overflow.
Is there a workaround for CVE-2001-0746?
A potential workaround for CVE-2001-0746 includes restricting access to the affected iPlanet Web Server methods using a firewall.