The ExecuteSoapAction function in the SOAPAction handler in the HTTP service in MiniUPnP MiniUPnPd 1.0 allows remote attackers to cause a denial of service (NULL pointer dereference and service crash) via a SOAPAction header that lacks a # (pound sign) character, a different vulnerability than CVE-2013-0230.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2013-01-31T21:00:00

Updated: 2024-08-06T15:04:48.681Z

Reserved: 2013-01-29T00:00:00

Link: CVE-2013-1461

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2013-01-31T21:55:01.567

Modified: 2015-10-08T14:44:23.857

Link: CVE-2013-1461

cve-icon Redhat

No data.