ID:3657 - Exploit for Input validation error in lighttpd - CVE-2012-5533
Published: July 29, 2020
lighttpd
Link to public exploit:
Vulnerability description
The vulnerability allows remote attackers to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input. A remote attacker can cause a denial of service (infinite loop) via a request with a header containing an empty token, as demonstrated using the "Connection: TE,,Keep-Alive" header.