This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Hp First view 2004-08-06
Product Virtualvault Last view 2004-08-06
Version 11.0.4 Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
 
CPE Product cpe:2.3:a:hp:virtualvault

Activity : Overall

Related : CVE

  Date Alert Description
10 2004-08-06 CVE-2004-0492

Heap-based buffer overflow in proxy_util.c for mod_proxy in Apache 1.3.25 to 1.3.31 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a negative Content-Length HTTP header field, which causes a large amount of data to be copied.

CAPEC : Common Attack Pattern Enumeration & Classification

id Name
CAPEC-47 Buffer Overflow via Parameter Expansion

Open Source Vulnerability Database (OSVDB)

id Description
6839 Apache HTTP Server mod_proxy Content-Length Overflow

OpenVAS Exploits

id Description
2009-06-03 Name : Solaris Update for Apache Security 113146-12
File : nvt/gb_solaris_113146_12.nasl
2009-06-03 Name : Solaris Update for Apache Security 114145-11
File : nvt/gb_solaris_114145_11.nasl
2009-06-03 Name : Solaris Update for Apache 116973-07
File : nvt/gb_solaris_116973_07.nasl
2009-06-03 Name : Solaris Update for Apache 116974-07
File : nvt/gb_solaris_116974_07.nasl
2008-09-24 Name : Gentoo Security Advisory GLSA 200406-16 (Apache)
File : nvt/glsa_200406_16.nasl
2008-09-04 Name : FreeBSD Ports: apache
File : nvt/freebsd_apache2.nasl
2008-01-17 Name : Debian Security Advisory DSA 525-1 (apache)
File : nvt/deb_525_1.nasl
2005-11-03 Name : Apache mod_proxy content-length buffer overflow
File : nvt/apache_mod_proxy_buff_overflow.nasl
0000-00-00 Name : Slackware Advisory SSA:2004-299-01 apache, mod_ssl, php
File : nvt/esoft_slk_ssa_2004_299_01.nasl
0000-00-00 Name : Slackware Advisory SSA:2004-305-01 apache+mod_ssl
File : nvt/esoft_slk_ssa_2004_305_01.nasl

Snort® IPS/IDS

Date Description
2014-01-10 server negative Content-Length attempt
RuleID : 2580-community - Type : SERVER-WEBAPP - Revision : 11
2014-01-10 server negative Content-Length attempt
RuleID : 2580 - Type : SERVER-WEBAPP - Revision : 11

Nessus® Vulnerability Scanner

id Description
2009-04-23 Name: The remote FreeBSD host is missing one or more security-related updates.
File: freebsd_pkg_ca6c8f350a5f11d9ad6f00061bc2ad93.nasl - Type: ACT_GATHER_INFO
2005-07-13 Name: The remote Slackware host is missing a security update.
File: Slackware_SSA_2004-299-01.nasl - Type: ACT_GATHER_INFO
2004-12-02 Name: The remote host is missing a Mac OS X update that fixes a security issue.
File: macosx_SecUpd20041202.nasl - Type: ACT_GATHER_INFO
2004-10-25 Name: The remote web server is affected by a heap-based buffer overflow vulnerability.
File: apache_mod_proxy_buff_overflow.nasl - Type: ACT_GATHER_INFO
2004-10-17 Name: The remote host is missing Sun Security Patch number 116973-07
File: solaris8_116973.nasl - Type: ACT_GATHER_INFO
2004-10-17 Name: The remote host is missing Sun Security Patch number 116974-07
File: solaris8_x86_116974.nasl - Type: ACT_GATHER_INFO
2004-09-29 Name: The remote Debian host is missing a security-related update.
File: debian_DSA-525.nasl - Type: ACT_GATHER_INFO
2004-08-30 Name: The remote Gentoo host is missing one or more security-related patches.
File: gentoo_GLSA-200406-16.nasl - Type: ACT_GATHER_INFO
2004-07-31 Name: The remote Mandrake Linux host is missing one or more security updates.
File: mandrake_MDKSA-2004-065.nasl - Type: ACT_GATHER_INFO
2004-07-12 Name: The remote host is missing Sun Security Patch number 113146-13
File: solaris9_113146.nasl - Type: ACT_GATHER_INFO
2004-07-12 Name: The remote host is missing Sun Security Patch number 114145-12
File: solaris9_x86_114145.nasl - Type: ACT_GATHER_INFO
2004-07-06 Name: The remote host is using an unsupported version of Mac OS X.
File: macosx_version.nasl - Type: ACT_GATHER_INFO
2004-07-06 Name: The remote Red Hat host is missing one or more security updates.
File: redhat-RHSA-2004-245.nasl - Type: ACT_GATHER_INFO