Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2004-1097

Опубликовано: 10 янв. 2005
Источник: debian
EPSS Низкий

Описание

Format string vulnerability in the cherokee_logger_ncsa_write_string function in Cherokee 0.4.17 and earlier, when authenticating via auth_pam, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via format string specifiers in the URL.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cherokeenot-affectedpackage

EPSS

Процентиль: 88%
0.04101
Низкий

Связанные уязвимости

nvd
больше 20 лет назад

Format string vulnerability in the cherokee_logger_ncsa_write_string function in Cherokee 0.4.17 and earlier, when authenticating via auth_pam, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via format string specifiers in the URL.

github
больше 3 лет назад

Format string vulnerability in the cherokee_logger_ncsa_write_string function in Cherokee 0.4.17 and earlier, when authenticating via auth_pam, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via format string specifiers in the URL.

EPSS

Процентиль: 88%
0.04101
Низкий