Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Embedthis Appweb before 4.6.6 and 5.x before 5.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via a Range header with an empty value, as demonstrated by "Range: x=,".
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Embedthis Software Appweb 拒绝服务漏洞
Vulnerability Description
Embedthis Software AppWeb是美国Embedthis Software公司的一款快速小型的Web服务器,它主要用于嵌入式应用、设备和Web服务,并支持安全防御策略、摘要式身份验证、虚拟主机等。 Embedthis Software Appweb 4.6.6之前版本和5.2.1之前5.x版本中存在安全漏洞。远程攻击者可借助带有空值的Range头利用该漏洞造成拒绝服务(空指针逆向引用)。
CVSS Information
N/A
Vulnerability Type
N/A