CVE-2009-2299

The Artofdefence Hyperguard Web Application Firewall (WAF) module before 2.5.5-11635, 3.0 before 3.0.3-11636, and 3.1 before 3.1.1-11637, a module for the Apache HTTP Server, allows remote attackers to cause a denial of service (memory consumption) via an HTTP request with a large Content-Length value but no POST data.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:N/I:N/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 74%
VendorProductVersion
hyperguard_web_application_firewall_projecthyperguard_web_application_firewall
𝑥
< 2.5.5-11635
hyperguard_web_application_firewall_projecthyperguard_web_application_firewall
3.0 ≤
𝑥
< 3.0.3-11636
hyperguard_web_application_firewall_projecthyperguard_web_application_firewall
3.1 ≤
𝑥
< 3.1.1-11637
𝑥
= Vulnerable software versions