CVE-2025-0726

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
21/02/2025
Last modified:
21/02/2025

Description

In NetX HTTP server functionality of Eclipse ThreadX NetX Duo before <br /> version 6.4.2, an attacker can cause a denial of service by specially <br /> crafted packets. The core issue is missing closing of a file in case of <br /> an error condition, resulting in the 404 error for each further file <br /> request. Users can work-around the issue by disabling the PUT request <br /> support.