Vulnerability Details CVE-2004-2534
Fastream NETFile Server 7.1.2 does not properly handle keep-alive connection timeouts and does not close the connection after a HEAD request, which allows remote attackers to perform a denial of service (connection consumption) by sending a large number HTTP HEAD requests.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.062
EPSS Ranking 90.4%
CVSS Severity
CVSS v2 Score 7.8
Products affected by CVE-2004-2534
-
cpe:2.3:a:fastream:netfile_server:6.5.1.980
-
cpe:2.3:a:fastream:netfile_server:6.5.1.981
-
cpe:2.3:a:fastream:netfile_server:6.7.2.1085
-
cpe:2.3:a:fastream:netfile_server:6.7.3
-
cpe:2.3:a:fastream:netfile_server:6.7.5
-
cpe:2.3:a:fastream:netfile_server:7.1
-
cpe:2.3:a:fastream:netfile_server:7.1.2