ID:4096 - Exploit for Input validation error in Monkey - CVE-2013-3724

 
Main Vulnerability Database Exploits ID:4096 - Exploit for Input validation error in Monkey - CVE-2013-3724

ID:4096 - Exploit for Input validation error in Monkey - CVE-2013-3724

Published: August 11, 2020


Vulnerability identifier: #VU42680
Vulnerability risk: Medium
CVE-ID: CVE-2013-3724
CWE-ID: CWE-20
Exploitation vector: Remote access
Vulnerable software:
Monkey

Link to public exploit:


Vulnerability description

The vulnerability allows a remote non-authenticated attacker to perform service disruption.

The mk_request_header_process function in mk_request.c in Monkey 1.1.1 allows remote attackers to cause a denial of service (thread crash and service outage) via a '' character in an HTTP request.


Remediation

Install update from vendor's website.