5

CVE-2008-0927

dhost.exe in Novell eDirectory 8.7.3 before sp10 and 8.8.2 allows remote attackers to cause a denial of service (CPU consumption) via an HTTP request with (1) multiple Connection headers or (2) a Connection header with multiple comma-separated values.  NOTE: this might be similar to CVE-2008-1777.

Data is provided by the National Vulnerability Database (NVD)
MicrosoftWindows-nt Version2000
   NovellEdirectory Version <= 8.7.3.9
   NovellEdirectory Version >= 8.8 < 8.8.2
MicrosoftWindows-nt Version2003
   NovellEdirectory Version <= 8.7.3.9
   NovellEdirectory Version >= 8.8 < 8.8.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 85.11% 0.993
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P