CVE-2000-0474

Current Description

Real Networks RealServer 7.x allows remote attackers to cause a denial of service via a malformed request for a page in the viewsource directory.

Basic Data

PublishedJune 01, 2000
Last ModifiedOctober 10, 2017
Assignercve@mitre.org
Data TypeCVE
Data FormatMITRE
Data Version4.0
Problem TypeNVD-CWE-Other
CVE Data Version4.0

Base Metric V2

CVSS 2 - Version2.0
CVSS 2 - Vector StringAV:N/AC:L/Au:N/C:N/I:N/A:C
CVSS 2 - Access VectorNETWORK
CVSS 2 - Access ComplexityLOW
CVSS 2 - AuthenticationNONE
CVSS 2 - Confidentiality ImpactNONE
CVSS 2 - Availability ImpactCOMPLETE
CVSS 2 - Base Score7.8
SeverityHIGH
Exploitability Score10.0
Impact Score6.9
Obtain All Privilegefalse
Obtain User Privilegefalse
Obtain Other Privilegefalse

Base Metric V3

No data provided.

Configurations

  • OR - Configuration 1
    Cpe VersionPartVendorProductVersionUpdateEditionLanguageSW EditionTarget SWTarget HWOtherVersion Start IncludingVersion End IncludingVersion Start ExcludingVersion End Excluding
    2.3ApplicationRealnetworksRealserver7.0*******
    2.3ApplicationRealnetworksRealserver7.0.1*******
    2.3ApplicationRealnetworksRealserver8.0_beta*******

Vulnerable Software List

VendorProductVersions
Realnetworks Realserver 7.0, 7.0.1, 8.0_beta

References

NameSourceURLTags
20000601 Remote DoS attack in Real Networks Real Server (Strike #2) Vulnerabilityhttp://archives.neohapsis.com/archives/bugtraq/2000-05/0410.htmlBUGTRAQ
20000601 Remote DoS attack in RealServer: USSR-2000043http://archives.neohapsis.com/archives/bugtraq/2000-05/0427.htmlBUGTRAQ
1288http://www.securityfocus.com/bid/1288BIDExploit Patch Vendor Advisory
realserver-malformed-remote-dos(4587)https://exchange.xforce.ibmcloud.com/vulnerabilities/4587XF