Vulnerability Description
mod_survey 3.0.0 through 3.0.15-pre6 does not check whether a survey exists before creating a subdirectory for it, which allows remote attackers to cause a denial of service (disk consumption and possible crash).
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mod Survey | Mod Survey | 3.0 |
References
- http://archives.neohapsis.com/archives/bugtraq/2003-05/0058.html
- http://gathering.itm.mh.se/modsurvey/SA20030504.txt
- http://gathering.itm.mh.se/modsurvey/changelog.php
- http://www.securityfocus.com/bid/7498Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11861
- http://archives.neohapsis.com/archives/bugtraq/2003-05/0058.html
- http://gathering.itm.mh.se/modsurvey/SA20030504.txt
- http://gathering.itm.mh.se/modsurvey/changelog.php
- http://www.securityfocus.com/bid/7498Patch
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11861
FAQ
What is CVE-2003-1462?
CVE-2003-1462 is a vulnerability with a CVSS score of 5.0 (MEDIUM). mod_survey 3.0.0 through 3.0.15-pre6 does not check whether a survey exists before creating a subdirectory for it, which allows remote attackers to cause a denial of service (disk consumption and poss...
How severe is CVE-2003-1462?
CVE-2003-1462 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2003-1462?
Check the references section above for vendor advisories and patch information. Affected products include: Mod Survey Mod Survey.