Release DateAug 31, 2010 |
Severitymedium |
ImpactDenial of Service: Remote attackers can crash vulnerable systems. |
DescriptionThis indicates an attack attempt against a denial-of-service vulnerability innginx. This vulnerability is caused by the vulnerable software's inability to properly handle encoded directory traversal attempts. It allows remote attackers to cause a denial of service via certain encoded directory traversal sequences that trigger memory corruption. |
Affected Productsnginx 0.8.36 |
Recommended ActionsCurrently we are not aware of any patches supplied by the vendor for this issue. |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2010-2266 |
Reference/shttp://www.exploit-db.com/exploits/13818/ |