CVE-2009-4658

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
03/03/2010
Last modified:
11/04/2025

Description

Xerver 4.32 allows remote authenticated users to cause a denial of service (daemon crash) via a non-numeric web port assignment in the management interface. NOTE: this can be leveraged by non-authenticated attackers using CVE-2009-4657.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:omidrouhani:xerver:4.32:*:*:*:*:*:*:*