« Volver al listado

CVE-2004-0799

Estado: ModificadaMedia (5)—

The HTTP daemon in Ipswitch WhatsUp Gold 8.03 and 8.03 Hotfix 1 allows remote attackers to cause a denial of service (server crash) via a GET request containing an MS-DOS device name, as demonstrated using "prn.htm".

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (2)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2004-0799",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2004-10-20T04:00:00.000",
  "references": [
    {
      "url": "http://www.idefense.com/application/poi/display?id=142&type=vulnerabilities",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.ipswitch.com/Support/WhatsUp/patch-upgrades.html",
      "tags": [
        "Patch"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/17418",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.idefense.com/application/poi/display?id=142&type=vulnerabilities",
      "tags": [
        "Patch",
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.ipswitch.com/Support/WhatsUp/patch-upgrades.html",
      "tags": [
        "Patch"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/17418",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The HTTP daemon in Ipswitch WhatsUp Gold 8.03 and 8.03 Hotfix 1 allows remote attackers to cause a denial of service (server crash) via a GET request containing an MS-DOS device name, as demonstrated using \"prn.htm\"."
    },
    {
      "lang": "es",
      "value": "El demonio HTTP de Ipswitch WhatsUp Gold 8,03 y 8.03 Hotfix 1 permite a atacantes remotos causar una denegación de servicio (caída del servidor) mediante una petición GET conteniendo un nombre de dispositivo MS-DOS, como se ha demostrado usando \"prn.htm\"."
    }
  ],
  "lastModified": "2026-06-16T22:06:24.240",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:ipswitch:whatsup_gold:8.03_hotfix_1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6289B868-6745-459C-9236-6E07D48C84CB"
            },
            {
              "criteria": "cpe:2.3:a:progress:whatsup_gold:7.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A7C10A30-D662-4966-92F5-02D34CE5FC45"
            },
            {
              "criteria": "cpe:2.3:a:progress:whatsup_gold:7.03:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "091C2AE0-9CED-4DFB-800C-EBB0421A8D8A"
            },
            {
              "criteria": "cpe:2.3:a:progress:whatsup_gold:7.04:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "803BB386-7134-4973-9942-0EDCEFA3B75A"
            },
            {
              "criteria": "cpe:2.3:a:progress:whatsup_gold:8.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "82B1C462-0B2F-4A5D-883C-BEFB09F3A9C2"
            },
            {
              "criteria": "cpe:2.3:a:progress:whatsup_gold:8.01:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "216E89A5-6C61-477F-9AB7-655DB59EE7BE"
            },
            {
              "criteria": "cpe:2.3:a:progress:whatsup_gold:8.03:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "07ACE682-33FF-4DCC-8CE0-E8549228480B"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}