Synopsis
Arbitrary code may be run on the remote server.
Description
It was possible to kill the web server by sending an invalid request with a too long HTTP 1.0 header (From, If-Modified-Since, Referer or Content-Type).
This vulnerability could be exploited to crash the web server. It might even be possible to execute arbitrary code on your system.
** As this is a generic test, it is not possible to know if the impact
** is limited to a denial of service.
Solution
Upgrade your web server or protect it with a filtering reverse proxy
Plugin Details
File Name: www_too_long_header10.nasl
Configuration: Enable paranoid mode
Supported Sensors: Nessus
Vulnerability Information
Required KB Items: Settings/ParanoidReport