ReQuest Serious Play F3 Media Server <= 7.0.3 Remote DoS
Vulnerability Description
ReQuest Serious Play F3 Media Server versions 7.0.3.4968 (Pro), 7.0.2.4954, 6.5.2.4954, 6.4.2.4681, 6.3.2.4203, and 2.0.1.823 contain a remote denial-of-service vulnerability. The device can be shut down or rebooted by an unauthenticated attacker through a single crafted HTTP GET request, allowing remote interruption of service availability.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2021-4465
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Gjoko Krstic of Zero Science Lab
References
- https://www.zeroscience.mk/en/vulnerabilities/ZSL-2020-5601.php
- https://www.exploit-db.com/exploits/48951
- https://packetstorm.news/files/id/159602
- https://cxsecurity.com/issue/WLB-2020100122
- https://exchange.xforce.ibmcloud.com/vulnerabilities/190031
- http://www.request.com/
- https://www.vulncheck.com/advisories/request-serious-play-f3-media-server-remote-dos
More from ReQuest Serious Play LLC
View All →Affected Vendor
ReQuest Serious Play LLC
View all reports →