CVE-2005-4015
N/A
N/A
Summary
PHP Web Statistik 1.4 does not rotate the log database or limit the size of the referer field, which allows remote attackers to fill the log files via a large number of requests, as demonstrated using pixel.php.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://freewebstat.com/changelog-english.html
- http://cert.uni-stuttgart.de/archive/bugtraq/2005/11/msg00325.html
- http://www.ush.it/2005/11/19/php-web-statistik/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23386
- http://securityreason.com/securityalert/214
References
- http://freewebstat.com/changelog-english.html
- http://cert.uni-stuttgart.de/archive/bugtraq/2005/11/msg00325.html
- http://www.ush.it/2005/11/19/php-web-statistik/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23386
- http://securityreason.com/securityalert/214
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.