Mongoose Web Server 6.9 contains a denial of service vulnerability that allows remote attackers to crash the service by establishing multiple socket connections. Attackers can repeatedly create connections to the default port and send malformed data to exhaust server resources and cause service unavailability.
Metrics
Affected Vendors & Products
References
History
Mon, 09 Mar 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 09 Mar 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cesanta
Cesanta mongoose Web Server |
|
| Vendors & Products |
Cesanta
Cesanta mongoose Web Server |
Fri, 06 Mar 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Mongoose Web Server 6.9 contains a denial of service vulnerability that allows remote attackers to crash the service by establishing multiple socket connections. Attackers can repeatedly create connections to the default port and send malformed data to exhaust server resources and cause service unavailability. | |
| Title | Mongoose Web Server 6.9 Denial of Service via Socket Connection | |
| Weaknesses | CWE-1188 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-03-06T12:19:18.181Z
Updated: 2026-03-09T18:05:12.812Z
Reserved: 2026-03-06T11:59:56.248Z
Link: CVE-2018-25193
Updated: 2026-03-09T18:04:56.531Z
Status : Awaiting Analysis
Published: 2026-03-06T13:16:02.347
Modified: 2026-03-09T13:35:34.633
Link: CVE-2018-25193
No data.