Description
A vulnerability was found in the Undertow HTTP server in versions before 2.0.28.SP1 when listening on HTTPS. An attacker can target the HTTPS port to carry out a Denial Of Service (DOS) to make the service unavailable on SSL.
Remediation
References
Related Vulnerabilities
Apache Tomcat Other Vulnerability (CVE-2006-3835)
WordPress Plugin Direct Download for Woocommerce Arbitrary File Download (1.15)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-4400)
WordPress Plugin Mingle Forum Multiple Cross-Site Request Forgery Vulnerabilities (1.0.34)