[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Cherokee Web Server 0.5.4 Denial Of Service
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: Re: Cherokee Web Server 0.5.4 Denial Of Service
- From: daniel.crowley@xxxxxxxxxxxxxxxx
- Date: 3 Nov 2009 20:22:06 -0000
This attack should only work on the Windows version of Cherokee Web Server, as
it references a DOS-style special device, AUX.
This attack can also be launched through a browser as follows:
http://www.example.com/AUX