CVE-2003-1084Monit vulnerability

5 documents5 sources
Severity
5.0MEDIUMNVD
EPSS
5.5%
top 9.78%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 24
Latest updateApr 29

Description

Monit 1.4 to 4.1 allows remote attackers to cause a denial of service (daemon crash) via an HTTP POST request with a negative Content-Length field.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

debiandebian/monit< monit 1:4.2.1-1 (bookworm)
Debiantildeslash/monit< 1:4.2.1-1+3
NVDtildeslash/monit17 versions+16

Patches

🔴Vulnerability Details

2
GHSA
GHSA-76mx-v5c3-hgw8: Monit 12022-04-29
OSV
CVE-2003-1084: Monit 12003-11-24

💥Exploits & PoCs

1
Exploit-DB
Microsoft Windows XP/Vista/2000/2003/2008 Kernel - Usermode Callback Privilege Escalation (MS08-025) (1)2008-04-08

📋Vendor Advisories

1
Debian
CVE-2003-1084: monit - Monit 1.4 to 4.1 allows remote attackers to cause a denial of service (daemon cr...2003
CVE-2003-1084 — Debian Monit vulnerability | cvebase