FRAgent.exe in Mandiant First Response (MFR) before 1.1.1, when run in daemon mode with SSL enabled, allows remote attackers to cause a denial of service (refused connections) via malformed requests, which results in a mishandled exception. Successful exploitation requires that the affected products are run in daemon mode with SSL enabled.
This vulnerability is addressed in the following product release:
Mandiant, First Response, 1.1.1
Publication date: Wed, 20 Dec 2006 08:28:00 +0000