CVE-2001-1083
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 9.6%
from disclosure to weapon0 days
Published on NVDJun 25
1st PoCJun 26
exploitation probability
9.6%top 5% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Icecast 1.3.7, and other versions before 1.3.11 with HTTP server file streaming support enabled allows remote attackers to cause a denial of service (crash) via a URL that ends in . (dot), / (forward slash), or \ (backward slash).
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/20973⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-020.0.txthttps://exchange.xforce.ibmcloud.com/vulnerabilities/6751http://www.debian.org/security/2001/dsa-089http://www.icecast.org/index.htmlhttp://www.icecast.org/releases/icecast-1.3.11.tar.gzhttp://www.redhat.com/support/errata/RHSA-2001-105.htmlhttp://www.redhat.com/support/errata/RHSA-2002-063.htmlhttp://www.securityfocus.com/archive/1/193516http://www.securityfocus.com/bid/2933