Vulnerability Description
GIGAPOD file servers (Appliance model and Software model) provide two web interfaces, 80/tcp and 443/tcp for user operation, and 8001/tcp for administrative operation. 8001/tcp is served by a version of Apache HTTP server containing a flaw in handling HTTP requests (CVE-2011-3192), which may lead to a denial-of-service (DoS) condition.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tripodworks | Gigapod Officehard Firmware | <= 3.04.03 |
| Tripodworks | Gigapod Officehard | - |
| Tripodworks | Gigapod 2010 Firmware | <= 3.01.02 |
| Tripodworks | Gigapod 2010 | - |
| Tripodworks | Gigapod 3 Firmware | <= 3.01.02 |
| Tripodworks | Gigapod 3 | - |
References
- https://jvn.jp/en/jp/JVN23809730/Third Party Advisory
- https://jvn.jp/en/jp/JVN23809730/Third Party Advisory
FAQ
What is CVE-2014-5329?
CVE-2014-5329 is a vulnerability with a CVSS score of 7.5 (HIGH). GIGAPOD file servers (Appliance model and Software model) provide two web interfaces, 80/tcp and 443/tcp for user operation, and 8001/tcp for administrative operation. 8001/tcp is served by a version...
How severe is CVE-2014-5329?
CVE-2014-5329 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2014-5329?
Check the references section above for vendor advisories and patch information. Affected products include: Tripodworks Gigapod Officehard Firmware, Tripodworks Gigapod Officehard, Tripodworks Gigapod 2010 Firmware, Tripodworks Gigapod 2010, Tripodworks Gigapod 3 Firmware.