HTTP: Invalid IPv6 Host Header
This signature detects invalid values for the HTTP Host: header. A successful attempt could result in arbitrary code execution or denial-of-service condition.
Extended Description
SQL injection vulnerability in mod_mysql_vhost.c in lighttpd before 1.4.35 allows remote attackers to execute arbitrary SQL commands via the host name, related to request_check_hostname.
Affected Products
Opensuse opensuse
References
CVE: CVE-2014-2323
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Opensuse
Lighttpd
Suse
Debian
7.5