PoC Index

CVE-2011-5009

MEDIUM 5.0EPSS 10.4%

The CmpWebServer.dll module in the Control service in 3S CoDeSys 3.4 SP4 Patch 2 allows remote attackers to cause a denial of service (NULL pointer dereference) via (1) a crafted Content-Length in an HTTP POST or (2) an invalid HTTP request method.

CVSS v2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
EPSS
10.39% chance of exploitation in the next 30 days, 95th percentile
Published
2011-12-25
Updated
2024-08-07

ExploitDB entries (2)

References

Related