Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
WebSpeed 3.x in OpenEdge 10.x in Progress Software Progress 9.1e, and certain other 9.x versions, allows remote attackers to cause a denial of service (infinite loop and daemon hang) via a messenger URL that invokes _edit.r with no additional parameters, as demonstrated by requests for cgiip.exe or wsisa.dll with WService=wsbroker1/_edit.r in the PATH_INFO.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Progress WebSpeed URL 拒绝服务漏洞
Vulnerability Description
Progress Software Progress 的OpenEdge 10.x中的WebSpeed 3.x允许远程攻击者借助一个信使URL,引起拒绝服务攻击(死循环和后台程序挂起)。该信使URL会调用不带有额外参数的_edit.r。
CVSS Information
N/A
Vulnerability Type
N/A