CVE-2016-5004
06.06.2017, 18:29
The Content-Encoding HTTP header feature in ws-xmlrpc 3.1.3 as used in Apache Archiva allows remote attackers to cause a denial of service (resource consumption) by decompressing a large file containing zeroes.Enginsight
Vendor | Product | Version |
---|---|---|
apache | ws-xmlrpc | 3.1.3 |
𝑥
= Vulnerable software versions
References