cvelist/2014/9xxx/CVE-2014-9708.json
Chandan 926e737e32
Update URLs to new Palo Alto Networks advisory website.
We recently updated our security advisory website. This commit replaces links to our old website with new simplified URls.
2020-02-14 13:30:31 -08:00

107 lines
3.9 KiB
JSON

{
"CVE_data_meta": {
"ASSIGNER": "cve@mitre.org",
"ID": "CVE-2014-9708",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "Embedthis Appweb before 4.6.6 and 5.x before 5.2.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via a Range header with an empty value, as demonstrated by \"Range: x=,\"."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "1037007",
"refsource": "SECTRACK",
"url": "http://www.securitytracker.com/id/1037007"
},
{
"name": "https://github.com/embedthis/appweb/issues/413",
"refsource": "CONFIRM",
"url": "https://github.com/embedthis/appweb/issues/413"
},
{
"name": "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html",
"refsource": "CONFIRM",
"url": "http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html"
},
{
"name": "https://github.com/embedthis/appweb/commit/7e6a925f5e86a19a7934a94bbd6959101d0b84eb#diff-7ca4d62c70220e0e226e7beac90c95d9L17348",
"refsource": "CONFIRM",
"url": "https://github.com/embedthis/appweb/commit/7e6a925f5e86a19a7934a94bbd6959101d0b84eb#diff-7ca4d62c70220e0e226e7beac90c95d9L17348"
},
{
"name": "http://packetstormsecurity.com/files/131157/Appweb-Web-Server-Denial-Of-Service.html",
"refsource": "MISC",
"url": "http://packetstormsecurity.com/files/131157/Appweb-Web-Server-Denial-Of-Service.html"
},
{
"name": "20150408 Re: [oss-security] Advisory: CVE-2014-9708: Appweb Web Server",
"refsource": "FULLDISC",
"url": "http://seclists.org/fulldisclosure/2015/Apr/19"
},
{
"name": "20150328 Advisory: CVE-2014-9708: Appweb Web Server",
"refsource": "BUGTRAQ",
"url": "http://www.securityfocus.com/archive/1/535028/100/0/threaded"
},
{
"name": "73407",
"refsource": "BID",
"url": "http://www.securityfocus.com/bid/73407"
},
{
"name": "20150328 Advisory: CVE-2014-9708: Appweb Web Server",
"refsource": "FULLDISC",
"url": "http://seclists.org/fulldisclosure/2015/Mar/158"
},
{
"name": "https://security.paloaltonetworks.com/CVE-2014-9708",
"refsource": "CONFIRM",
"url": "https://security.paloaltonetworks.com/CVE-2014-9708"
}
]
}
}