CVE-2009-4875
CVE-2009-4875
FCKeditor.Java 2.4 allows remote attackers to cause a denial of service (infinite loop) via a malformed request parameter that contains "ctrl" characters.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://dev.fckeditor.net/ticket/3902http://java.fckeditor.net/changes-report.html#a2.4.2http://secunia.com/advisories/35870https://exchange.xforce.ibmcloud.com/vulnerabilities/51738http://sourceforge.net/project/shownotes.php?release_id=697258http://www.osvdb.org/56060http://www.securityfocus.com/bid/35709