Release date:
Updated on:
Affected Systems:
Cogent Real-Time Systems Cogent DataHub <7.3.4
Description:
--------------------------------------------------------------------------------
Bugtraq id: 63397
Cogent DataHub is a real-time data solution, belonging to SCADA and automation software.
An error occurred when processing http post requests in versions earlier than Cogent DataHub 7.3.4. Attackers can exploit this vulnerability to cause server crash and DoS by adding specially crafted query strings to POST requests.
<* Source: Pawel Wylecial
Link: http://www.securelist.com/en/advisories/55494
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Cogent Real-Time Systems
------------------------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.cogentdatahub.com/Products/Cogent_DataHub.html
Http://www.cogentdatahub.com/ReleaseNotes.html