First published: Fri Dec 31 2004(Updated: )
The webmail service in 602 Lan Suite 2004.0.04.0909 and earlier allows remote attackers to cause a denial of service (CPU and memory consumption) by sending a POST request with a large Content-Length value, then disconnecting without sending that amount of data.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Software602 602pro Lan Suite | <=2004.0.04.0909 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-1501 is classified as a denial of service vulnerability.
To fix CVE-2004-1501, upgrade to a version of 602 Lan Suite later than 2004.0.04.0909.
CVE-2004-1501 allows remote attackers to exhaust CPU and memory resources, leading to service interruptions.
CVE-2004-1501 affects 602 Lan Suite version 2004.0.04.0909 and earlier.
Yes, CVE-2004-1501 can be exploited remotely by sending specially crafted POST requests.