Users login

Create an account »

JOIN XATRIX

Users login

Home » Hacking News » Savant web server vulnerability

Savant web server vulnerability

by phiber on March 9th, 2001 Savant web server has been written by Michael Lamont (http://savant.sourceforge.com) it is very configurable freeware http deamon for win95/98. It's current version is 3.0



Vendor Name: Savant

Discoverd by: Xatrix

Url: www.xatrix.org



1. About software



Savant web server has been written by Michael Lamont
(http://savant.sourceforge.com) it is very configurable freeware
http deamon for win95/98. It's current version is 3.0



2. Full Detail



It is known that you can crash Savant web server 2.1 and 2.0 by sending something like this '%00'(that was discoverd by Ussr), and it was fixed in version 3.0 but something like that is still present in 3.0; by sending something like (e.g.)



www.web_server_that_runs_on_SAVANT.com/%%%



web server can be crashed.



3. Closing word



I hope that vendor will proved patch,or meybe release new version of
web server which will be immune to this type of DoS.

Hello goes to Ussr team for discovering this type of DoS for
version 2.1 and 20. long time ago ...





"Stay informed, visit XatriX security"

>> www.xatrix.org <<


Newsletter signup

Signup to our monthly newsletter and stay in touch with IT news!

Free E-books

We've got ebooks! But they're not online. :( Please give us a few days to bring downloads back.

Contact

Have something to say or just wanna drop us a line? Please keep this in mind: to spam, we reply with spam.

Contact us »